00010001 42.118.214.68 - admin [16/Sep/2024:00:00:02 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:00:02 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:00:08 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:00:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:00:24 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:00:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:00:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:02 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:04 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:06 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:07 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:09 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:11 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:11 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:11 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:11 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:12 +0700] "CONNECT zws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:13 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:13 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:14 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:14 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:15 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:16 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:19 +0700] "CONNECT zws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:20 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:20 +0700] "CONNECT zws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:20 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:21 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:21 +0700] "CONNECT zws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:22 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:22 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:23 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:23 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:24 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:25 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:26 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:27 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:29 +0700] "CONNECT zws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:30 +0700] "CONNECT zws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:01:34 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:34 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:40 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:01:43 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:04 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:08 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:02:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:11 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:12 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:02:14 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:15 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:16 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:02:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:19 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:02:19 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:02:38 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:40 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:02:40 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:42 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:43 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:45 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:47 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:02:47 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:47 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:47 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:48 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:48 +0700] "CONNECT zws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:02:49 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:02:49 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:02:50 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:27 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:29 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:35 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:36 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:37 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:37 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:37 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:38 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:38 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:39 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:40 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:40 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:40 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:40 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:40 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:41 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:42 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:44 +0700] "CONNECT zws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:45 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:46 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:46 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:47 +0700] "CONNECT zws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:47 +0700] "CONNECT zws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:48 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:48 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:48 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:48 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:49 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:49 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:49 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:50 +0700] "CONNECT zws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:52 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:53 +0700] "CONNECT zws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:55 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:03:56 +0700] "CONNECT zws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:03:57 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:05 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:06 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:07 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:08 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:09 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:37 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:38 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:39 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:41 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:04:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:44 +0700] "CONNECT tgsvr.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:45 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:04:46 +0700] "CONNECT game.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:46 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:04:47 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:47 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:47 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:04:47 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:49 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:49 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:04:50 +0700] "CONNECT lg1.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:51 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:04:53 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:53 +0700] "CONNECT gs18.catizen.ai:8205 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:54 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:54 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:54 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:54 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:54 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:54 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:54 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:54 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:55 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:55 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:04:55 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:55 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:04:55 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:33 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:34 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:38 +0700] "CONNECT tgsvr.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:38 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:39 +0700] "CONNECT game.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:41 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:41 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:41 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:42 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:43 +0700] "CONNECT tgsvr.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:44 +0700] "CONNECT lg1.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:44 +0700] "CONNECT game.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:46 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:46 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:46 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:46 +0700] "CONNECT gs7.catizen.ai:8268 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:47 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:48 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:48 +0700] "CONNECT lg1.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:51 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:51 +0700] "CONNECT gs24.catizen.ai:8206 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:52 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:05:53 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:06:08 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:33 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:08:35 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:08:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:35 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:08:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:36 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:37 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:08:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:37 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:38 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:39 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:39 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:08:39 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:39 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:40 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:41 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:41 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:41 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:41 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:08:42 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:42 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:43 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:44 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:44 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:44 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:44 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:45 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:08:45 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:46 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:46 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:47 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:08:47 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:09:35 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:09:37 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:09:42 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:09:44 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:09:48 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:09:50 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:09:51 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:09:51 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acedskrhnbcvecl22zwkskk6ctvq_1072/efniojlnjndmcbiieegkicadnoecjjef_1072_all_adh2746tr7d4x36vvggrhbq624iq.crx3 HTTP/1.1" 200 156240 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:09:52 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/cmtqj62qlar3c5c2ec5rsw7yia_2024.9.14.1/kiabhabjdbkjdpjbpigfodbdjmbglcoo_2024.09.14.01_all_lkd6uadpdkzaf5zd5wcamcpb3m.crx3 HTTP/1.1" 200 9497 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:09:52 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/pdxji6szcp5kegwk4ul5aamqai_465/lmelglejhemejginpboagddgdfbepgmp_465_all_ZZ_adlnpg7dt2g4i5hht4tz3uagijia.crx3 HTTP/1.1" 200 55788 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:09:54 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:09:54 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:09:57 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:09:58 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:09:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:09:59 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:09:59 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:09:59 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:09:59 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:10:00 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/ad36445m2ehnvje342fvryxajoma_3041/jflookgnkcckhobaglndicnbbgbonegd_3041_all_disrgfhbspkatdkpfhliap5vqe.crx3 HTTP/1.1" 200 76852 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:10:00 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/lgkfclqhsgvqufcyk4miftouou_9.51.0/gcmjkmgdlgnkkcocmoeiminaijmmjnii_9.51.0_all_acbqatjjvjcpzcwzr7qehoq4wf4q.crx3 HTTP/1.1" 200 37510 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:10:01 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:10:01 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/cmtqj62qlar3c5c2ec5rsw7yia_2024.9.14.1/kiabhabjdbkjdpjbpigfodbdjmbglcoo_2024.09.14.01_all_lkd6uadpdkzaf5zd5wcamcpb3m.crx3 HTTP/1.1" 200 9536 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:10:02 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acedskrhnbcvecl22zwkskk6ctvq_1072/efniojlnjndmcbiieegkicadnoecjjef_1072_all_adh2746tr7d4x36vvggrhbq624iq.crx3 HTTP/1.1" 200 156240 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:10:02 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/pdxji6szcp5kegwk4ul5aamqai_465/lmelglejhemejginpboagddgdfbepgmp_465_all_ZZ_adlnpg7dt2g4i5hht4tz3uagijia.crx3 HTTP/1.1" 200 55827 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:10:04 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:10:41 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:11:30 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:11:38 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:12:29 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:21 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:23 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:23 +0700] "CONNECT qrc.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:23 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:23 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:23 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:24 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:24 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:24 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:24 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:25 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:25 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:00:13:25 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:25 +0700] "CONNECT s.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:26 +0700] "CONNECT websdk.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:26 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:26 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:26 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:27 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:27 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:28 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:29 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:29 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:29 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:29 +0700] "CONNECT match.adsrvr.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:29 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:30 +0700] "CONNECT pippio.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:30 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:31 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:31 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:31 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:31 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:31 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:31 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:31 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:32 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:33 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:00:13:33 +0700] "CONNECT appleid.cdn-apple.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:33 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:33 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:34 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:34 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:34 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:34 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:34 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:34 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:34 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:34 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:34 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:34 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:34 +0700] "CONNECT cm.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:35 +0700] "CONNECT google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:35 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:35 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:35 +0700] "CONNECT static.geetest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:35 +0700] "CONNECT static.geetest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:35 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:36 +0700] "CONNECT oauth.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:36 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:36 +0700] "CONNECT static.geetest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:36 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:37 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:38 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:38 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:38 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:38 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:38 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:39 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:40 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:41 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:42 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:42 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:42 +0700] "CONNECT storage.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:42 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:43 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:44 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:47 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:47 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:49 +0700] "CONNECT passwordsleakcheck-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:13:49 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:13:53 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:02 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:02 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:02 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:02 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:02 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:02 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:08 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:08 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:08 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:08 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:08 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:09 +0700] "CONNECT qrc.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:09 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:09 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:00:14:09 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:09 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:09 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:09 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:10 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:11 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:11 +0700] "CONNECT secure.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:11 +0700] "CONNECT segments.company-target.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:13 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:14 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:14 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:15 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:00:14:15 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:15 +0700] "CONNECT img.webmd.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:17 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:54 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:00:14:54 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:54 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:54 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:55 +0700] "CONNECT ds.reson8.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:55 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:55 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:55 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:55 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:56 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:56 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:56 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:14:57 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:57 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:14:57 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:01 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:10 +0700] "CONNECT www.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:12 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:12 +0700] "CONNECT www.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:12 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:13 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:15 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:15 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:15 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:15 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:19 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:19 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:19 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:22 +0700] "CONNECT sentry.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:22 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:23 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:23 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:25 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:25 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:25 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:25 +0700] "CONNECT an.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:27 +0700] "CONNECT gw-iad-bid.ymmobi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:27 +0700] "CONNECT eu.asas.yango.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:27 +0700] "CONNECT sync.sharethis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:27 +0700] "CONNECT eu.asas.yango.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:27 +0700] "CONNECT core.yads.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:27 +0700] "CONNECT cm.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:28 +0700] "CONNECT t.adx.opera.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:29 +0700] "CONNECT abs.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:52 +0700] "CONNECT widget.intercom.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:54 +0700] "CONNECT js.intercomcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:54 +0700] "CONNECT js.intercomcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:15:55 +0700] "CONNECT api-iam.intercom.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:15:57 +0700] "CONNECT nexus-websocket-a.intercom.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:16:20 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:16:20 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:16:20 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:16:55 +0700] "CONNECT jpushws.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:16:55 +0700] "CONNECT wspri.okx.com:8443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:16:56 +0700] "CONNECT wspri.okx.com:8443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:16:56 +0700] "CONNECT jpushws.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:16:58 +0700] "CONNECT jpush.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:16:58 +0700] "CONNECT jpush.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:39 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:41 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:41 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:43 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:43 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:43 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:43 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:44 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:44 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:44 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:45 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:45 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:45 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:45 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:45 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:45 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:45 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:45 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:45 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:45 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:45 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:46 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:47 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:47 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:47 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:48 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:48 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:48 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:48 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:48 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:49 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:49 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:49 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:49 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:49 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:50 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:50 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:50 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:50 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:50 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:50 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:51 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:51 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:51 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:51 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:51 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:51 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:51 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:51 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:52 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:52 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:53 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:53 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:53 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:53 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:53 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:54 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:55 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:55 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:56 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:56 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:56 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:56 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:56 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:56 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:56 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:56 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:56 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:56 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:57 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:58 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:18:58 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:58 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:18:58 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:00 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:00 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:01 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:01 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:01 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:01 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:01 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:02 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:02 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:03 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:03 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:04 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:04 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:04 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:04 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:04 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:04 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:04 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:04 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:05 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:05 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:05 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:05 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:05 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:06 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:07 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:07 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:07 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:07 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:07 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:07 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:07 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:09 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:09 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:11 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:11 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:13 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:15 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:15 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:15 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:16 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:16 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:17 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:18 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:19 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:21 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:29 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:29 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:19:41 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:43 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:45 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:19:53 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:19:55 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:19:56 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:19:58 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:19:59 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:00:20:00 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:20:17 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:35:12 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:35:12 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:35:13 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:35:13 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:53:11 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:53:11 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:00:53:13 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:00:53:13 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:12 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:14 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:14 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:15 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:16 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:17 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:19 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:19 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:20 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:20 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:20 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:20 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:20 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:21 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:21 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:21 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:22 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:22 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:22 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:22 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:22 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:23 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:23 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:23 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:23 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:23 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:23 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:24 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:24 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:24 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:24 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:24 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:24 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:24 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:25 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:25 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:25 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:25 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:26 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:26 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:26 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:26 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:26 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:26 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:27 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:27 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:27 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:27 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:27 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:27 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:27 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:27 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:29 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:31 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:31 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:31 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:31 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:31 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:32 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:33 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:33 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:33 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:33 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:34 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:34 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:35 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:36 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:37 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:37 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:37 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:37 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:38 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:38 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:38 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:38 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:38 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:38 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:38 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:39 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:40 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:40 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:40 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:40 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:40 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:42 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:42 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:42 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:42 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:42 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:42 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:43 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:43 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:43 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:44 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:44 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:44 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:44 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:45 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:45 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:46 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:47 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:47 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:47 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:48 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:48 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:50 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:50 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:00:53 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:00:55 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:01:13 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:01:16 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:01:17 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:01:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:01:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:01:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:01:27 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:01:01:27 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:01:01:28 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:01:01:30 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:01:32 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:01:01:32 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:01:01:41 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:01:56 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:10:52 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:10:52 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:10:53 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:10:53 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:29:01 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:29:01 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:29:03 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:29:03 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:06 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:08 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:08 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:10 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:10 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:11 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:11 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:11 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:13 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:14 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:14 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:15 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:15 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:15 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:15 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:15 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:15 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:16 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:16 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:17 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:17 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:17 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:17 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:17 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:17 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:17 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:17 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:17 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:17 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:17 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:18 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:18 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:19 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:19 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:20 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:20 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:20 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:20 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:20 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:21 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:21 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:21 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:21 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:21 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:21 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:21 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:24 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:24 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:25 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:25 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:25 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:27 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:28 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:28 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:28 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:28 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:28 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:28 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:29 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:29 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:29 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:29 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:29 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:31 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:31 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:31 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:31 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:31 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:31 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:32 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:32 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:32 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:33 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:33 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:33 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:33 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:33 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:33 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:33 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:33 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:35 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:35 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:35 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:35 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:35 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:36 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:36 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:36 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:37 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:38 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:38 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:40 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:41 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:41 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:41 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:41 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:42 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:43 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:44 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:44 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:48 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:41:52 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:41:52 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:42:08 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:42:10 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:42:12 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:42:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:42:15 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:42:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:42:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:42:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:42:21 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:01:42:22 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:01:42:22 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:01:42:25 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:01:42:27 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:01:42:30 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:01:42:35 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:42:38 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:48:56 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:48:56 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:01:48:58 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:01:48:58 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:16:17 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:16:17 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:16:19 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:16:19 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:42 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:44 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:44 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:45 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:45 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:45 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:45 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:46 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:47 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:47 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:47 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:47 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:48 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:48 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:49 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:49 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:50 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:52 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:52 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:54 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:54 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:54 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:54 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:54 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:54 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:55 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:55 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:55 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:56 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:57 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:58 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:58 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:21:59 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:00 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:01 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:02 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:03 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:03 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:04 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:04 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:05 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:05 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:05 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:05 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:05 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:05 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:06 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:06 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:06 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:06 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:06 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:06 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:06 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:06 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:08 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:08 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:08 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:08 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:08 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:08 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:08 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:08 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:08 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:11 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:13 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:14 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:15 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:15 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:15 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:16 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:16 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:17 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:18 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:18 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:27 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:22:44 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:46 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:47 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:22:56 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:02:22:56 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:02:22:57 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:02:23:00 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:02:23:00 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:02:23:03 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:02:23:06 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:42:25 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:42:25 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:02:42:26 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:02:42:26 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:21 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:23 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:23 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:26 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:26 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:26 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:26 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:28 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:28 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:28 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:30 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:30 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:30 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:30 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:30 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:30 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:30 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:30 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:30 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:30 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:31 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:32 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:32 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:33 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:33 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:33 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:33 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:33 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:33 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:33 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:33 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:33 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:33 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:33 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:34 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:34 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:35 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:35 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:35 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:35 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:36 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:41 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:42 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:42 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:42 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:42 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:43 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:43 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:43 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:43 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:43 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:43 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:43 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:43 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:44 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:44 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:44 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:45 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:45 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:45 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:46 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:48 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:48 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:48 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:48 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:48 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:49 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:49 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:49 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:49 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:49 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:49 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:50 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:50 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:50 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:50 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:51 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:52 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:52 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:53 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:55 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:55 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:55 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:56 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:02:57 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:57 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:02:58 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:00 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:03:00 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:03:00 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:02 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:03:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:03:02 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:05 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:06 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:03:23 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:25 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:26 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:35 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:03:03:36 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:03:03:36 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/fcnljeu2cutqzki4irmloqssfm_9120/hfnkpimlhhgieaddgfemjhofmfblmnib_9120_all_a5qyzcxkawtdj4wsriuvtwlvzi.crx3 HTTP/1.1" 200 26501 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:03:03:38 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/fcnljeu2cutqzki4irmloqssfm_9120/hfnkpimlhhgieaddgfemjhofmfblmnib_9120_all_a5qyzcxkawtdj4wsriuvtwlvzi.crx3 HTTP/1.1" 200 26501 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:03:03:39 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:40 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:40 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:42 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:43 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:45 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:03:46 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:04:12 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:04:12 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:04:13 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:04:13 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:22:51 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:22:51 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:22:52 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:22:52 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:40:21 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:40:21 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:40:23 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:40:23 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:07 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:10 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:10 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:11 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:11 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:11 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:11 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:12 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:12 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:12 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:13 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:14 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:14 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:15 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:15 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:16 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:17 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:17 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:17 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:17 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:17 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:17 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:17 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:18 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:18 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:20 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:20 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:20 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:20 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:21 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:21 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:21 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:22 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:24 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:26 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:26 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:26 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:27 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:28 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:28 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:28 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:28 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:28 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:28 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:28 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:29 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:29 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:29 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:30 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:30 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:30 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:30 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:30 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:30 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:30 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:30 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:31 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:31 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:31 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:31 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:31 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:31 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:31 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:32 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:32 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:32 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:32 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:32 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:32 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:33 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:33 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:33 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:33 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:35 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:35 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:35 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:35 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:35 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:35 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:35 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:36 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:37 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:41 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:41 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:41 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:41 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:41 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:41 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:43 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:43 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:44 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:43:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:45 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:46 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:53 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:55 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:43:55 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:09 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:09 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:09 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:12 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:12 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:13 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:22 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:03:44:22 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:03:44:23 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:03:44:28 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879037 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:03:44:29 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:29 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879037 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:03:44:31 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:31 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:32 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:44:33 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:57:19 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:57:19 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:03:57:21 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:03:57:21 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:13:55 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:13:55 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:13:57 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:13:57 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:23:56 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:23:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:23:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:23:58 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:23:58 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:23:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:23:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:02 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:02 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:03 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:03 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:04 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:04 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:04 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:04 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:05 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:05 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:05 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:05 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:06 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:06 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:07 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:07 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:07 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:07 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:07 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:07 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:07 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:07 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:08 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:08 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:08 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:09 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:09 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:10 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:10 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:10 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:10 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:10 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:10 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:10 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:10 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:10 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:10 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:11 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:11 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:11 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:11 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:11 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:11 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:11 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:12 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:13 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:15 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:15 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:15 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:15 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:15 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:16 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:16 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:17 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:17 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:17 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:17 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:18 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:19 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:20 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:20 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:20 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:21 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:21 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:23 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:23 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:23 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:23 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:23 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:24 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:24 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:24 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:25 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:25 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:25 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:26 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:26 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:26 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:26 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:26 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:26 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:28 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:28 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:28 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:29 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:29 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:29 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:29 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:29 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:30 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:30 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:31 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:32 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:32 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:32 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:24:32 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:33 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:33 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:34 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:35 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:36 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:39 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:24:58 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:25:00 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:25:01 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:25:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:25:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:25:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:25:11 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:04:25:12 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:04:25:13 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:25:13 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:04:25:15 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:04:25:22 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:04:25:22 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:04:25:24 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:25:28 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:25:30 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:32:54 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:32:54 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:32:56 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:32:56 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:53:02 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:53:02 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:04:53:04 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:04:53:04 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:36 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:38 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:38 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:39 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:39 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:39 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:39 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:39 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:40 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:40 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:41 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:42 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:43 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:43 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:43 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:43 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:43 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:43 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:44 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:45 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:45 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:45 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:45 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:45 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:45 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:45 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:45 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:45 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:45 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:46 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:46 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:46 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:47 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:47 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:47 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:47 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:47 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:49 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:49 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:49 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:49 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:49 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:49 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:49 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:52 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:53 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:53 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:53 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:55 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:57 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:57 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:57 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:58 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:58 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:58 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:58 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:58 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:59 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:04:59 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:59 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:59 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:59 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:59 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:04:59 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:00 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:00 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:00 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:00 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:00 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:00 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:01 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:01 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:02 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:03 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:03 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:03 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:05 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:05 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:05 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:05 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:07 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:08 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:09 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:10 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:11 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:11 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:11 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:12 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:12 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:14 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:15 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:21 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:24 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:37 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:40 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:41 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:50 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:05:52 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:05:52 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:05:52 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:05:55 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:05:57 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:05:59 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:06:00 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:06:09 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:06:10 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:11:58 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:11:58 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:11:59 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:11:59 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:30:04 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:30:04 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:30:06 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:30:06 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:19 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:21 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:21 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:24 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:26 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:26 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:27 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:27 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:27 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:28 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:28 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:28 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:28 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:28 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:28 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:28 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:28 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:28 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:29 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:29 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:29 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:29 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:29 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:30 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:30 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:30 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:30 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:30 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:31 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:32 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:33 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:33 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:35 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:35 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:35 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:35 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:38 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:40 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:40 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:40 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:41 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:41 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:41 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:41 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:41 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:41 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:42 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:42 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:42 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:43 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:44 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:45 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:45 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:45 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:45 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:45 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:45 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:45 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:46 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:46 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:46 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:48 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:48 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:48 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:50 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:50 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:50 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:51 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:51 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:51 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:51 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:51 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:51 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:51 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:51 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:51 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:52 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:52 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:53 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:53 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:53 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:53 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:53 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:53 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:54 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:55 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:56 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:57 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:57 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:57 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:57 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:57 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:45:58 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:59 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:59 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:45:59 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:46:00 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:46:04 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:46:05 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:46:21 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:46:23 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:46:24 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:46:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:46:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:46:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:46:33 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:46:34 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:46:34 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:46:39 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:46:41 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:46:43 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:05:46:53 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:46:55 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:47:35 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:47:35 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:05:47:37 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:05:47:37 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:04:26 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:04:26 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:04:28 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:04:28 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:21:25 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:21:25 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:21:27 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:21:27 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:04 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:06 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:06 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:07 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:07 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:07 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:07 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:07 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:07 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:08 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:08 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:08 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:08 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:08 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:11 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:11 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:11 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:12 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:13 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:13 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:13 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:13 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:13 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:13 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:13 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:14 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:14 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:14 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:14 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:14 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:15 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:15 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:15 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:15 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:15 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:15 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:15 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:15 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:15 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:15 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:15 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:16 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:17 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:17 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:17 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:17 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:17 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:18 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:18 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:18 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:18 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:18 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:19 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:21 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:21 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:21 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:21 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:21 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:22 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:24 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:24 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:24 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:24 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:24 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:24 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:25 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:26 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:26 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:27 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:27 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:27 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:27 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:27 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:28 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:28 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:28 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:28 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:28 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:28 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:29 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:29 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:29 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:29 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:29 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:30 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:31 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:31 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:31 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:31 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:31 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:31 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:31 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:32 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:32 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:32 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:32 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:32 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:32 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:32 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:32 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:33 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:33 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:33 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:35 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:35 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:35 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:36 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:38 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:38 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:40 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:41 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:41 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:41 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:41 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:42 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:26:43 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:43 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:45 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:26:53 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:27:06 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:27:08 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:27:09 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:27:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:27:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:27:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:27:19 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:06:27:19 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:06:27:20 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:06:27:22 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:06:27:24 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:06:27:25 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:27:45 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:38:26 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:38:26 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:38:28 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:38:28 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:59:18 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:59:18 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:06:59:20 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:06:59:20 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:23 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:25 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:25 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:26 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:27 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:28 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:28 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:28 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:28 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:30 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:30 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:30 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:31 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:31 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:31 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:31 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:31 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:31 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:33 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:33 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:33 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:34 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:35 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:35 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:35 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:35 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:35 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:35 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:36 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:36 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:37 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:38 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:39 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:39 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:39 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:41 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:41 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:41 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:41 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:41 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:41 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:41 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:43 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:43 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:43 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:44 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:45 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:45 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:48 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:48 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:48 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:48 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:48 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:48 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:48 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:48 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:48 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:49 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:50 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:50 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:50 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:50 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:50 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:50 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:50 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:50 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:50 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:50 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:50 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:51 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:51 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:51 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:52 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:52 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:53 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:53 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:53 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:53 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:53 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:53 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:54 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:54 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:55 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:56 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:56 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:56 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:56 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:56 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:56 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:56 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:57 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:58 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:06:58 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:06:58 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:07:00 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:07:00 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:07:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:07:04 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:07:08 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:07:25 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:07:27 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:07:28 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:07:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:07:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:07:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:07:37 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:07:07:38 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:07:07:38 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:07:07:43 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:07:07:43 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:07:07:53 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:25:35 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:25:35 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:25:36 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:25:36 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:23 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:25 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:25 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:27 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:27 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:28 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:28 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:28 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:30 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:31 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:31 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:31 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:31 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:32 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:32 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:32 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:32 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:33 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:33 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:34 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:34 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:34 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:34 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:34 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:34 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:34 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:34 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:34 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:35 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:35 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:36 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:36 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:36 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:37 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:37 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:37 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:37 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:38 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:38 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:38 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:40 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:40 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:41 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:41 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:41 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:41 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:41 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:41 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:41 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:41 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:41 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:42 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:43 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:43 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:43 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:43 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:43 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:43 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:44 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:44 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:46 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:46 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:46 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:47 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:47 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:47 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:47 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:48 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:48 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:48 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:48 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:48 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:48 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:48 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:48 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:49 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:49 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:49 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:49 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:49 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:50 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:50 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:50 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:50 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:50 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:50 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:50 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:52 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:52 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:53 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:53 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:53 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:53 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:53 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:53 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:54 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:55 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:55 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:55 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:56 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:57 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:47:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:47:59 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:48:01 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:48:01 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:48:02 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:48:03 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:48:25 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:48:27 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:48:28 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:48:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:48:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:48:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:48:37 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:07:48:38 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:07:48:38 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:07:48:40 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:07:48:41 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:07:48:41 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:07:48:42 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:49:01 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:49:19 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:49:19 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:07:49:21 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:07:49:21 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:09:22 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:09:22 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:09:24 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:09:24 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:27:35 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:27:35 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:27:37 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:27:37 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:07 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:09 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:09 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:11 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:11 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:12 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:13 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:13 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:13 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:13 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:14 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:15 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:15 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:16 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:16 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:16 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:16 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:17 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:17 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:17 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:17 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:17 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:17 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:18 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:19 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:20 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:20 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:20 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:21 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:21 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:21 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:22 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:22 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:22 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:22 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:22 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:23 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:23 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:23 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:23 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:24 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:28 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:28 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:28 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:28 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:28 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:28 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:29 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:29 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:30 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:30 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:30 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:30 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:30 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:30 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:32 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:32 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:33 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:34 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:34 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:35 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:38 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:38 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:38 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:38 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:38 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:39 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:40 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:40 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:40 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:40 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:40 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:40 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:41 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:41 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:42 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:43 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:43 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:44 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:45 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:45 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:47 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:47 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:50 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:51 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:51 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:51 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:54 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:55 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:55 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:55 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:55 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:55 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:57 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:57 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:57 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:58 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:28:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:28:58 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:29:06 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:29:09 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:29:10 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:29:11 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:29:12 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:29:13 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:29:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:29:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:29:17 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:29:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:29:22 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:08:29:23 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:08:29:25 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:08:29:29 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:08:29:33 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:08:29:35 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:08:29:47 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:29:54 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:45:07 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:45:07 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:08:45:08 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:08:45:08 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:02:19 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:02:19 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:02:20 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:02:20 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:33 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:35 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:35 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:37 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:37 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:38 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:39 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:39 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:39 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:39 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:40 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:41 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:41 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:41 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:41 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:42 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:42 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:42 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:42 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:42 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:42 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:42 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:43 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:43 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:43 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:43 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:43 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:43 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:44 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:45 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:45 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:45 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:45 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:46 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:46 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:46 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:46 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:46 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:46 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:47 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:47 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:47 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:48 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:49 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:51 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:51 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:51 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:51 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:51 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:51 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:51 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:53 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:53 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:53 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:53 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:54 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:54 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:54 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:54 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:54 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:55 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:56 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:56 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:56 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:58 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:58 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:58 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:58 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:58 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:58 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:09:58 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:09:58 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:00 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:00 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:00 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:00 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:00 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:00 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:00 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:00 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:01 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:01 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:03 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:03 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:03 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:03 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:03 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:04 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:05 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:06 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:06 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:06 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:08 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:09 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:10 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:10 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:10 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:12 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:14 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:22 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:24 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:35 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:35 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:36 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:37 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:37 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:39 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:47 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:47 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:09:10:49 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:09:10:50 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:09:10:51 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:10:52 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:10:53 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:09:10:54 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:11:03 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:11:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:11:05 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:11:06 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:19:30 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:19:30 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:19:32 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:19:32 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:40:54 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:40:54 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:40:55 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:40:55 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:34 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:36 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:36 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:38 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:38 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:38 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:38 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:39 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:39 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:39 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:39 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:40 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:40 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:41 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:41 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:41 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:42 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:43 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:43 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:43 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:43 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:43 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:43 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:43 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:44 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:44 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:44 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:44 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:44 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:45 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:45 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:45 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:45 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:45 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:45 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:45 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:46 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:47 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:47 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:47 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:47 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:47 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:48 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:48 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:48 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:49 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:49 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:49 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:49 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:49 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:49 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:50 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:51 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:51 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:51 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:52 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:52 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:52 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:52 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:52 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:53 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:53 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:53 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:53 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:53 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:53 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:54 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:54 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:54 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:54 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:54 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:54 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:55 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:56 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:56 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:56 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:57 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:57 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:57 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:50:58 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:58 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:50:59 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:01 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:02 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:02 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:02 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:02 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:02 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:02 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:02 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:03 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:03 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:03 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:04 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:04 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:04 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:04 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:05 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:05 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:06 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:06 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:07 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:07 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:07 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:07 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:07 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:07 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:07 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:08 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:08 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:09 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:09 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:11 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:12 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:14 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:19 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:31 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:36 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:38 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:40 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:41 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:09:51:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:44 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:09:51:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:45 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:09:51:46 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:47 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:09:51:48 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:09:51:51 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:09:51:52 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:51:55 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:09:52:06 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:09:52:10 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:00:37 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:00:37 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:00:39 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:00:39 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:18:54 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:18:54 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:18:56 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:18:56 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:47 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:50 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:50 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:31:51 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:52 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:31:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:53 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:53 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:31:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:54 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:54 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:54 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:31:54 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:55 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:31:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:55 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:55 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:56 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:56 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:56 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:57 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:31:57 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:58 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:58 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:31:58 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:31:58 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:58 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:59 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:31:59 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:31:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:31:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:31:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:00 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:00 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:00 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:00 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:00 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:01 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:01 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:01 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:01 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:01 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:01 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:03 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:03 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:03 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:04 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:04 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:04 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:04 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:04 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:04 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:04 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:04 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:05 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:05 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:05 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:06 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:07 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:09 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:09 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:09 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:11 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:11 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:11 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:12 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:12 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:12 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:12 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:12 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:12 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:12 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:12 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:13 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:13 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:13 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:14 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:14 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:14 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:14 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:15 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:15 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:15 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:15 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:15 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:15 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:15 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:15 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:16 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:16 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:17 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:18 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:18 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:19 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:19 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:19 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:19 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:19 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:19 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:19 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:19 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:20 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:21 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:22 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:22 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:22 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:23 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:24 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:24 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:25 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:26 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:28 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:28 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:32:50 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:52 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:53 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:32:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:33:04 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:10:33:04 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:10:33:04 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:10:33:11 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:10:33:14 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:10:33:15 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:10:37:03 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:37:03 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:10:37:05 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:37:05 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:55:56 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:55:56 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:55:58 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:10:55:58 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:14:36 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:14:36 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:14:38 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:14:38 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:32 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:34 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:34 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:37 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:38 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:38 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:38 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:38 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:39 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:40 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:40 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:40 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:40 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:41 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:41 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:41 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:41 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:41 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:41 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:42 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:42 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:42 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:42 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:42 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:42 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:42 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:43 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:43 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:43 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:43 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:43 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:43 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:43 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:44 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:44 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:44 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:44 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:45 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:45 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:45 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:45 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:45 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:45 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:46 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:46 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:46 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:46 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:47 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:47 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:47 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:47 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:47 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:47 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:47 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:49 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:49 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:49 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:49 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:49 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:49 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:49 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:49 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:52 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:53 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:53 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:53 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:53 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:53 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:53 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:53 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:53 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:55 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:55 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:55 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:56 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:57 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:57 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:17:59 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:01 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:01 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:01 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:03 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:04 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:04 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:08 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:08 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:08 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:08 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:08 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:08 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:10 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:11 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:14 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:15 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:18:34 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:36 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:38 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:44 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:18:46 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:11:18:49 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:11:18:50 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:11:18:51 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:11:18:56 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:11:18:57 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:11:18:59 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:19:10 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:19:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:19:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:19:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:19:57 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:23:11 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:23:11 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:23:13 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:23:13 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:23:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:24:16 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:24:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:25:50 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:26:20 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:26:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:26:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:27:14 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:27:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:27:59 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:28:11 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:28:27 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:28:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:28:53 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:29:05 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:29:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:29:08 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:29:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:29:57 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:29:57 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:30:56 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:31:04 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:31:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:32:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:33:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:33:08 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:33:41 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:33:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:33:45 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:33:47 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:33:47 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:33:49 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:33:49 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:34:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:34:54 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:36:18 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:36:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:37:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:39:33 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:39:34 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:39:35 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:39:35 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:39:35 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:39:37 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:39:37 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:39:38 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:39:38 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:39:38 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:39:40 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:39:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:39:43 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:40:10 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:40:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:42:14 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:45:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:45:31 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:45:31 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:45:33 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:45:34 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:46:13 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:47:03 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:47:04 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:47:08 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:47:10 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:47:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:47:42 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:47:53 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:54:58 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:54:58 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:11:54:59 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:11:54:59 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:34 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:37 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:38 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:39 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:40 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:41 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:41 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:41 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:41 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:41 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:43 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:43 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:44 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:45 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:46 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:46 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:46 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:00:46 +0700] "CONNECT websdk.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:46 +0700] "CONNECT s.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:46 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:46 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:47 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:47 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:47 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:48 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:00:48 +0700] "CONNECT appleid.cdn-apple.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:48 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:49 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:50 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:50 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:50 +0700] "CONNECT match.adsrvr.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:50 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:50 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:50 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:50 +0700] "CONNECT segments.company-target.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:51 +0700] "CONNECT google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:51 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:51 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:52 +0700] "CONNECT oauth.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:53 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:54 +0700] "CONNECT storage.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:54 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:54 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:54 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:54 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:56 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:58 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:00:58 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:00:59 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:00 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:01 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:01 +0700] "CONNECT passwordsleakcheck-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:01 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:01 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:02 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:03 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:03 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:04 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:19 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:19 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:19 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:19 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:19 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:19 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:19 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:20 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:20 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:23 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:01:24 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:25 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:25 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:25 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:26 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:26 +0700] "CONNECT secure.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:26 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:27 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:28 +0700] "CONNECT ds.reson8.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:28 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:28 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:29 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:29 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:29 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:30 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:30 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:30 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:31 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:31 +0700] "CONNECT encrypted-tbn0.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:31 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:31 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:31 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:32 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:32 +0700] "CONNECT encrypted-tbn0.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:32 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:32 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:32 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:32 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:33 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:33 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:33 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:33 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:33 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:33 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:33 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:33 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:34 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:34 +0700] "CONNECT appleid.cdn-apple.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:35 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:01:35 +0700] "CONNECT s.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:35 +0700] "CONNECT websdk.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:35 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:35 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:35 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:37 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:37 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:37 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:37 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:37 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:37 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:39 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:39 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:01:39 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:39 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:39 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:39 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:39 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:39 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:39 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:39 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:39 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:40 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:40 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:40 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:40 +0700] "CONNECT cm.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:40 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:40 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:40 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:40 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:40 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:40 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:41 +0700] "CONNECT match.adsrvr.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:41 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:41 +0700] "CONNECT pippio.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:41 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:41 +0700] "CONNECT google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:41 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:41 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:42 +0700] "CONNECT oauth.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:43 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:43 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:44 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:01:44 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:44 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:44 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:45 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:01:46 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:47 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:01:48 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:49 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:49 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:51 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:52 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:52 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:53 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:01:53 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:01:58 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:02:24 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:02:25 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:02:25 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:02:27 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:02:27 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:02:29 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:02:36 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:02:42 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:02:44 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:02:48 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:02:48 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:03:20 +0700] "CONNECT storage.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:03:34 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:04:10 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:04:25 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:05:39 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:05:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:33 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:33 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:35 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:45 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:06:45 +0700] "CONNECT s.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:06:45 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:45 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:06:45 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:06:45 +0700] "CONNECT appleid.cdn-apple.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:45 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:45 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:06:45 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:45 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:46 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:06:47 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:47 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:48 +0700] "CONNECT secure.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:06:48 +0700] "CONNECT cm.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:49 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:49 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:06:50 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:00 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:07:01 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:01 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:01 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:01 +0700] "CONNECT segments.company-target.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:07:01 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:01 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:02 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:02 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:03 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:07:03 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:07:03 +0700] "CONNECT img.webmd.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:07:08 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:07:09 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:09 +0700] "CONNECT ds.reson8.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:10 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:10 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:19 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:19 +0700] "CONNECT s.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:07:20 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:07:20 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:07:20 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:20 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:22 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:22 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:45 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:51 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:53 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:07:53 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:55 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:56 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:56 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:58 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:07:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:07:58 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:00 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:01 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:01 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:01 +0700] "CONNECT zws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:01 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:03 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:03 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:05 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:05 +0700] "CONNECT zws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:06 +0700] "CONNECT zws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:06 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:07 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:08 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:08 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:09 +0700] "CONNECT zws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:09 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:10 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:10 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:10 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:10 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:13 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:13 +0700] "CONNECT zws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:14 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:16 +0700] "CONNECT zws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:19 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:19 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:23 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:28 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:30 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:46 +0700] "CONNECT tgsvr.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:46 +0700] "CONNECT tgsvr.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:47 +0700] "CONNECT tgsvr.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:48 +0700] "CONNECT game.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:48 +0700] "CONNECT game.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:48 +0700] "CONNECT game.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:49 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:49 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:49 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:49 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:50 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:50 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:50 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:51 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:51 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:51 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:53 +0700] "CONNECT lg1.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:53 +0700] "CONNECT lg1.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:53 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:53 +0700] "CONNECT lg1.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:55 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:55 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:56 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:56 +0700] "CONNECT gs24.catizen.ai:8206 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:56 +0700] "CONNECT gs7.catizen.ai:8268 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT gs18.catizen.ai:8205 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:57 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:58 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:58 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:58 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:58 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:58 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:58 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:58 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:58 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:58 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:58 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:59 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:59 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:59 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:59 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:59 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:59 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:08:59 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:08:59 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:09:01 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:09:02 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:09:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:09:04 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:09:05 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:09:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:09:07 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:09:08 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:09:12 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:10:06 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:07 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:07 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:08 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:08 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:08 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:08 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:08 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:09 +0700] "CONNECT qrc.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:09 +0700] "CONNECT qrc.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:10 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:10:10 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:10 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:11 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:10:11 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:12 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:10:12 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:13 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:10:13 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:13 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:13 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:13 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:13 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:10:14 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:14 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:14 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:14 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:14 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:10:14 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:14 +0700] "CONNECT ds.reson8.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:14 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:15 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:10:17 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:17 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:18 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:10:18 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:10:20 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:10:21 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:22 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:10:23 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:23 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:23 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:25 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:35 +0700] "CONNECT appleid.cdn-apple.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:10:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:11:00 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:11:17 +0700] "CONNECT zws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:11:30 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:11:30 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:11:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:12:00 +0700] "CONNECT gs24.catizen.ai:8206 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:12:00 +0700] "CONNECT gs7.catizen.ai:8268 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:12:10 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:12:12 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:12:13 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:12:35 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:12:36 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:12:36 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:12:36 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:12:37 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:12:37 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:12:37 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:12:37 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:12:37 +0700] "CONNECT segments.company-target.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:12:38 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:12:38 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:12:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:00 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:00 +0700] "CONNECT gs7.catizen.ai:8268 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:00 +0700] "CONNECT gs24.catizen.ai:8206 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:09 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:20 +0700] "CONNECT gs7.catizen.ai:8268 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:23 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:23 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:23 +0700] "CONNECT zws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:23 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:23 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:26 +0700] "CONNECT lg1.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:28 +0700] "CONNECT gs7.catizen.ai:8268 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:35 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:35 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:36 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:41 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:41 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:42 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:13:42 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:42 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:42 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:42 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:42 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:42 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:43 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:43 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:43 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:43 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:43 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:43 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:43 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:43 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:13:43 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:44 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:44 +0700] "CONNECT ds.reson8.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:45 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:13:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:00 +0700] "CONNECT gs24.catizen.ai:8206 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:14:31 +0700] "CONNECT zws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:14:53 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:56 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:56 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:14:58 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:14:58 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:58 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:14:58 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:58 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:58 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:58 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:58 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:58 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:14:59 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:14:59 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:14:59 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:59 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:59 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:59 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:59 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:14:59 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:00 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:01 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:01 +0700] "CONNECT api-node.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:01 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:01 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:01 +0700] "CONNECT appleid.cdn-apple.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:01 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:02 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:15:02 +0700] "CONNECT websdk.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:02 +0700] "CONNECT s.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:02 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:03 +0700] "CONNECT wa.onelink.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:04 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:04 +0700] "CONNECT time.gologin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:04 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:04 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:06 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:07 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:15:07 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:07 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:07 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:07 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:08 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:08 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:08 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT cm.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:09 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:10 +0700] "CONNECT google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:10 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:10 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:10 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:10 +0700] "CONNECT match.adsrvr.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:10 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:10 +0700] "CONNECT pippio.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:10 +0700] "CONNECT oauth.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:11 +0700] "CONNECT static.geetest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:11 +0700] "CONNECT static.geetest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:11 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:12 +0700] "CONNECT csp.withgoogle.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:12 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:12 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:12 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:13 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:13 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:13 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:13 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:14 +0700] "CONNECT static.geetest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:14 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:14 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:18 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:18 +0700] "CONNECT storage.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:15:19 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:19 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:20 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:22 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:22 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:22 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:26 +0700] "CONNECT static.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:54 +0700] "CONNECT passwordsleakcheck-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:56 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:15:58 +0700] "CONNECT www.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:01 +0700] "CONNECT sc-datasink.ffe390afd658c19dcbf707e0597b846d.de:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:01 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:01 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:01 +0700] "CONNECT www.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:01 +0700] "CONNECT www.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:01 +0700] "CONNECT www.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:02 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:02 +0700] "CONNECT www.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:02 +0700] "CONNECT www.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:02 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:02 +0700] "CONNECT www.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:02 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:02 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:02 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT sc-datasink.ffe390afd658c19dcbf707e0597b846d.de:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT api.ffbbbdc6d3c353211fe2ba39c9f744cd.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/cmtqj62qlar3c5c2ec5rsw7yia_2024.9.14.1/kiabhabjdbkjdpjbpigfodbdjmbglcoo_2024.09.14.01_all_lkd6uadpdkzaf5zd5wcamcpb3m.crx3 HTTP/1.1" 200 9497 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:16:03 +0700] "CONNECT api.ffbbbdc6d3c353211fe2ba39c9f744cd.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/pdxji6szcp5kegwk4ul5aamqai_465/lmelglejhemejginpboagddgdfbepgmp_465_all_ZZ_adlnpg7dt2g4i5hht4tz3uagijia.crx3 HTTP/1.1" 200 55788 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:04 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:05 +0700] "CONNECT pup-resource.ffe390afd658c19dcbf707e0597b846d.de:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:05 +0700] "CONNECT pup-resource.ffe390afd658c19dcbf707e0597b846d.de:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:06 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:06 +0700] "CONNECT static.bymj.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:06 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:07 +0700] "CONNECT static.bymj.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:07 +0700] "CONNECT ws2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:07 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:07 +0700] "CONNECT fh-static.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:07 +0700] "CONNECT fh-static.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:07 +0700] "CONNECT fh-static.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:08 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:08 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:08 +0700] "CONNECT api.geetest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:08 +0700] "CONNECT api.geetest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:08 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT ws2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT ws2.bycbe.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT ws2.byapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT api2-2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT api2-1.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT time.gologin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT api.ffbbbdc6d3c353211fe2ba39c9f744cd.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT time.gologin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:10 +0700] "CONNECT static.geetest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:10 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:16:10 +0700] "CONNECT csp.withgoogle.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:10 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:10 +0700] "CONNECT sc-datasink.ffe390afd658c19dcbf707e0597b846d.de:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:10 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:10 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:10 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:10 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:10 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:11 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:11 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:11 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:11 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:11 +0700] "CONNECT static.geetest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:11 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:11 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:11 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:12 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:13 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:13 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:13 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:13 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:13 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:13 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:14 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:14 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:14 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:14 +0700] "CONNECT secure.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:15 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:15 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:16 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:16 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:16 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:16 +0700] "CONNECT cm.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT ws2.byapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT ws2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT ws2.bycbe.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT api2-1.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT api2-2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:17 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT api2.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT sc-datasink.ffe390afd658c19dcbf707e0597b846d.de:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT sc-datasink.ffe390afd658c19dcbf707e0597b846d.de:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:18 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:19 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:19 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:19 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:19 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:19 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:19 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:19 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:19 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:19 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:19 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:20 +0700] "CONNECT snap.licdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:20 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:20 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:20 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:20 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:21 +0700] "CONNECT www.bybit.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:21 +0700] "CONNECT mail.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT top-fwz1.mail.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT cnv.event.prod.bidr.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT www.googleadservices.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:23 +0700] "CONNECT time.gologin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:23 +0700] "CONNECT time.gologin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:23 +0700] "CONNECT www.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:23 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:23 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:23 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:23 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:23 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:23 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:24 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:24 +0700] "CONNECT px.ads.linkedin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:24 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:24 +0700] "CONNECT px.ads.linkedin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:24 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:24 +0700] "CONNECT www.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:25 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:25 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:25 +0700] "CONNECT www.linkedin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:25 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:25 +0700] "CONNECT www.linkedin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:25 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:26 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:26 +0700] "CONNECT an.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:26 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:26 +0700] "CONNECT privacy-cs.mail.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:26 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:28 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:28 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:28 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:28 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:28 +0700] "CONNECT time.gologin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:28 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:28 +0700] "CONNECT privacy-cs.mail.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:28 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:28 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:28 +0700] "CONNECT actions-registry.dialectapi.to:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:28 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:29 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:29 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:29 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:29 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:29 +0700] "CONNECT mail.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:29 +0700] "CONNECT core.yads.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:29 +0700] "CONNECT waa-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:29 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:29 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:30 +0700] "CONNECT privacy-cs.mail.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:30 +0700] "CONNECT an.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:30 +0700] "CONNECT sentry.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:30 +0700] "CONNECT www.recaptcha.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:30 +0700] "CONNECT an.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:31 +0700] "CONNECT aa.online-metrix.net:3478 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:31 +0700] "CONNECT aa.online-metrix.net:3478 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:31 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:31 +0700] "CONNECT waa-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:31 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:31 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:31 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:31 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:31 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:31 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:31 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:32 +0700] "CONNECT cm.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:32 +0700] "CONNECT appsgrowthpromo-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:32 +0700] "CONNECT sync.sharethis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:32 +0700] "CONNECT t.adx.opera.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:32 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:32 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:32 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:32 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:32 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:32 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT peoplestackwebexperiments-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT people-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT people-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT appsgrowthpromo-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT gw-iad-bid.ymmobi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:33 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT appleid.cdn-apple.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT waa-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT people-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT peoplestackwebexperiments-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT people-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT eu.asas.yango.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT www.recaptcha.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT ci3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT ci3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:34 +0700] "CONNECT eu.asas.yango.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:35 +0700] "CONNECT mail.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:35 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:35 +0700] "CONNECT waa-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:35 +0700] "CONNECT top-fwz1.mail.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:35 +0700] "CONNECT www.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:35 +0700] "CONNECT www.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:35 +0700] "CONNECT www.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:35 +0700] "CONNECT top-fwz1.mail.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:36 +0700] "CONNECT csp.withgoogle.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:36 +0700] "CONNECT cm.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:36 +0700] "CONNECT abs.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:36 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:36 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:36 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:36 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:36 +0700] "CONNECT abs.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:36 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:36 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:36 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:37 +0700] "CONNECT ci3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:37 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:37 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:37 +0700] "CONNECT ci3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:37 +0700] "CONNECT ci3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:37 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:37 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:37 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:38 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:38 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:38 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:38 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:38 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:38 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:38 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:38 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:38 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:38 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:39 +0700] "CONNECT www.recaptcha.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:39 +0700] "CONNECT time.gologin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:39 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:39 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:40 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:41 +0700] "CONNECT an.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT mail-ads.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT time.gologin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT h.online-metrix.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT h.online-metrix.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT h64.online-metrix.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT addons-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:42 +0700] "CONNECT 9kqz9786hdg2s645h4lah6rv4ggyx456vkn7xcjgec576e5d87a24ba3sac.d.aa.online-metrix.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:43 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:43 +0700] "CONNECT mail-ads.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:43 +0700] "CONNECT signaler-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:43 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:43 +0700] "CONNECT contacts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:43 +0700] "CONNECT core.yads.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:43 +0700] "CONNECT cm.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:43 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:44 +0700] "CONNECT aa.online-metrix.net:3478 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:44 +0700] "CONNECT aa.online-metrix.net:3478 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:44 +0700] "CONNECT t.adx.opera.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:44 +0700] "CONNECT addons-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:44 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:44 +0700] "CONNECT signaler-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:44 +0700] "CONNECT csp.withgoogle.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:44 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:45 +0700] "CONNECT sync.sharethis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:45 +0700] "CONNECT gw-iad-bid.ymmobi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:46 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:46 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:46 +0700] "CONNECT api.ffbbbdc6d3c353211fe2ba39c9f744cd.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:46 +0700] "CONNECT eu.asas.yango.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:46 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:46 +0700] "CONNECT eu.asas.yango.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:47 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:47 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:47 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:47 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:48 +0700] "CONNECT abs.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:51 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:51 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:52 +0700] "CONNECT yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:53 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:53 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:53 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:53 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:53 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:53 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:53 +0700] "CONNECT mail.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:53 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:53 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:54 +0700] "CONNECT www.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:54 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:54 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:54 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:55 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:16:55 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:55 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:55 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:55 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:55 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:55 +0700] "CONNECT time.gologin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:56 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:56 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:56 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:56 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:56 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:56 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:56 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:56 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:57 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:57 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:57 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:57 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:57 +0700] "CONNECT privacy-cs.mail.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:57 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:57 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:58 +0700] "CONNECT segments.company-target.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:59 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:16:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:16:59 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:00 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:00 +0700] "CONNECT gs24.catizen.ai:8206 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:01 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:17:01 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:01 +0700] "CONNECT img.webmd.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:02 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:02 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:02 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:03 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:03 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:03 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:04 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT s.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT appleid.cdn-apple.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT websdk.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:05 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:07 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:17:07 +0700] "CONNECT img.gurenla.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:07 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:07 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:08 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:08 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:08 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:08 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:09 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:10 +0700] "CONNECT time.gologin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:10 +0700] "CONNECT ds.reson8.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:11 +0700] "CONNECT mail.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:11 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:12 +0700] "CONNECT bitget.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:12 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:12 +0700] "CONNECT a643dc1f417234b232e383bb33da229f.report-uri.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:13 +0700] "CONNECT pixel.mathtagmedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 127.0.0.1" 42.118.214.68 - admin [16/Sep/2024:12:17:13 +0700] "CONNECT wa.appsflyer.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:13 +0700] "CONNECT d.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:13 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:13 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT dsum-sec.casalemedia.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT eb2.3lift.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT x.bidswitch.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT idsync.rlcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT us-u.openx.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT ups.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT sync.taboola.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT image2.pubmatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT pixel.rubiconproject.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:14 +0700] "CONNECT ib.adnxs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:15 +0700] "CONNECT sync.outbrain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:15 +0700] "CONNECT x.adroll.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:15 +0700] "CONNECT time.gologin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:16 +0700] "CONNECT ds.reson8.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:17 +0700] "CONNECT rollout.ada.support:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:18 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:18 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:18 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:18 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:18 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:29 +0700] "CONNECT gs24.catizen.ai:8206 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:35 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:38 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:40 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:41 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:43 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:48 +0700] "CONNECT signaler-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:49 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:49 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:17:53 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:58 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:58 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:58 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:58 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:17:59 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:18:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:18:21 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:18:22 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:18:22 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:18:22 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:18:36 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:18:43 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:18:44 +0700] "CONNECT stream.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:19:05 +0700] "CONNECT mail.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:19:05 +0700] "CONNECT contentmx.okcoin.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:19:05 +0700] "CONNECT monitor-frontend-collector.a.bybit-aws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:19:05 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:19:05 +0700] "CONNECT www.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:19:05 +0700] "CONNECT sc-datasink.ffe390afd658c19dcbf707e0597b846d.de:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:19:05 +0700] "CONNECT www.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:19:05 +0700] "CONNECT www.bitget.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:19:05 +0700] "CONNECT top-fwz1.mail.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:19:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:20:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:20:07 +0700] "CONNECT lg1.catizen.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:20:08 +0700] "CONNECT zws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:20:08 +0700] "CONNECT zws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:20:09 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:09 +0700] "CONNECT gs24.catizen.ai:8206 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:10 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:10 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:10 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:10 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:10 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:10 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:11 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:11 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:11 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:13 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:20:21 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:20:21 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:22:53 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:22:53 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:22:55 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:22:55 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:20 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:23 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:23 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:24 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:25 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:25 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:25 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:26 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:26 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:26 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:26 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:26 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:27 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:27 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:27 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:27 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:27 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:28 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:28 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:28 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:28 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:29 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:29 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:29 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:30 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:30 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:30 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:30 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:30 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:31 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:31 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:31 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:31 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:32 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:33 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:34 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:34 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:34 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:34 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:34 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:35 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:35 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:35 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:35 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:36 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:37 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:38 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:38 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:41 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:41 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:41 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:42 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:44 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:44 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:46 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:48 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:49 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:49 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:49 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:55 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:55 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:55 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:56 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:56 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:56 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:56 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:56 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:56 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:56 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:56 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:35:56 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:56 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:56 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:57 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:35:57 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:01 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:01 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:07 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:07 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:07 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:09 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:10 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:10 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:10 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:11 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:11 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:14 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:14 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:14 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:14 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:15 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:20 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:20 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:21 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:21 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:24 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:24 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:24 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:24 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:25 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:25 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:25 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:26 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:28 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:29 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:29 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:29 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:29 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:35 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:36:38 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:39 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:36:42 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:36:46 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:36:48 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:36:48 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:36:51 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:36:52 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:12:37:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:37:28 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:37:29 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:48:18 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:48:18 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:12:48:20 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:12:48:20 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:07:39 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:07:39 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:07:41 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:07:41 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:11 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:13 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:14 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:14 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:14 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:15 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:15 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:16 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:17 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:17 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:17 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:19 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:19 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:19 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:20 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:20 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:21 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:21 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:21 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:21 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:22 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:23 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:25 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:26 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:26 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:26 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:26 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:27 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:27 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:27 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:28 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:31 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:31 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:31 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:31 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:31 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:34 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:34 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:34 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:34 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:35 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:35 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:35 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:35 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:35 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:37 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:37 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:37 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:37 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:37 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:37 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:37 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:37 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:38 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:39 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:40 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:40 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:40 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:41 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:41 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:43 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:43 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:43 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:43 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:44 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:45 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:45 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:45 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:46 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:47 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:47 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:50 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:18:56 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:18:57 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:08 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:19:13 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:16 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:17 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:20 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:20 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:19:20 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:20 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:20 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:22 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:19:22 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:19:22 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:24 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:19:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:19:25 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:28 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:31 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:13:19:33 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:13:19:43 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:13:19:43 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:19:44 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:13:19:44 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:25:38 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:25:38 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:25:39 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:25:39 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:43:11 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:43:11 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:43:12 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:43:12 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:46 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:49 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:49 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:50 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:50 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:50 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:52 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:53 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:53 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:53 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:53 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:54 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:54 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:55 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:57 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:57 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:57 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:57 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:57 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:58 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:58 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:58 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:58 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:58 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:58 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:58 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:59 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:59 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:13:59:59 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:59 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:13:59:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:01 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:01 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:01 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:02 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:02 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:02 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:02 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:02 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:02 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:03 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:03 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:03 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:03 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:03 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:03 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:03 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:03 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:03 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:03 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:04 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:04 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:04 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:05 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:05 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:05 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:06 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:06 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:08 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:08 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:08 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:08 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:08 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:08 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:08 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:09 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:09 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:09 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:10 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:10 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:10 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:10 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:11 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:11 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:11 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:12 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:12 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:12 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:12 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:12 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:13 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:13 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:13 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:14 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:15 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:15 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:15 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:17 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:17 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:18 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:19 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:20 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:21 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:21 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:21 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:22 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:22 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:23 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:27 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:27 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:48 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:51 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:52 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:56 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:57 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:57 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:57 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:00:58 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:58 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:58 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:58 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:00:58 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:01:05 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:14:01:05 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:14:01:06 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:14:01:15 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:14:01:17 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:14:01:19 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:01:19 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:01:20 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:01:20 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:01:26 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:18:42 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:18:42 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:18:44 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:18:44 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:39:17 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:39:17 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:39:18 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:39:18 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:23 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:25 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:25 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:29 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:29 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:29 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:30 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:31 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:31 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:32 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:32 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:33 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:33 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:33 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:34 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:34 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:34 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:34 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:34 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:34 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:34 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:34 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:34 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:35 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:35 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:35 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:35 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:35 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:35 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:36 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:36 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:37 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:40 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:42 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:44 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:44 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:45 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:45 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:45 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:45 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:45 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:46 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:46 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:46 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:47 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:47 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:47 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:47 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:47 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:47 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:47 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:49 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:49 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:49 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:50 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:50 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:51 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:51 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:51 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:51 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:51 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:51 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:53 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:54 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:54 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:54 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:55 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:55 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:55 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:57 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:57 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:41:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:41:59 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:42:01 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:42:01 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:42:01 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:42:01 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:42:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:42:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:42:04 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:42:14 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:42:25 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:42:26 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:42:27 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:42:29 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:42:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:42:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:42:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:42:40 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:14:42:40 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:14:42:41 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:14:42:43 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:42:43 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:14:42:46 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:14:42:47 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:42:51 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:42:52 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:14:59:37 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:59:37 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:59:39 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:14:59:39 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:18:21 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:18:21 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:18:23 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:18:23 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:52 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:54 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:22:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:54 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:56 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:57 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:22:57 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:57 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:58 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:22:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:58 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:22:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:00 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:00 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:01 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:01 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:01 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:01 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:01 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:01 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:01 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:01 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:02 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:03 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:04 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:05 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:05 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:06 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:06 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:06 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:07 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:08 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:09 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:09 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:09 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:10 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:11 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:12 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:12 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:12 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:12 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:13 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:13 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:15 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:15 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:15 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:15 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:15 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:15 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:16 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:16 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:16 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:17 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:17 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:17 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:17 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:18 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:19 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:19 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:21 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:22 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:22 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:23 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:24 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:24 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:24 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:24 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:24 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:24 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:25 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:25 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:26 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:26 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:26 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:26 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:27 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:28 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:29 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:29 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:30 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:31 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:31 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:34 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:38 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:43 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:50 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:50 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:50 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:50 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:51 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:51 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:53 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:53 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:53 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:54 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:56 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:58 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:23:59 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:23:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:24:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:24:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:07 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:15:24:08 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:15:24:08 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:15:24:09 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:11 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:11 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:12 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:12 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:12 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:12 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:15:24:14 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:15 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:15:24:15 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:16 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:16 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:15:24:16 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:16 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:16 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:16 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:17 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:23 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:24 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:24:25 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:37:47 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:37:47 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:15:37:48 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:37:48 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:57:04 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:57:04 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:57:05 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:15:57:05 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:33 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:35 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:35 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:36 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:36 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:37 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:37 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:38 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:38 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:39 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:39 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:39 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:39 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:40 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:41 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:41 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:41 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:42 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:42 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:42 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:42 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:42 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:42 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:42 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:43 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:43 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:43 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:43 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:43 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:43 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:44 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:44 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:44 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:44 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:44 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:44 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:44 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:44 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:44 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:44 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:45 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:46 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:46 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:46 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:46 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:46 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:46 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:47 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:47 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:47 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:47 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:47 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:48 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:48 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:48 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:49 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:49 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:49 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:50 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:51 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:51 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:51 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:51 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:52 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:52 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:52 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:52 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:52 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:54 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:54 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:54 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:54 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:54 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:54 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:54 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:54 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:54 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:55 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:55 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:56 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:56 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:56 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:56 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:56 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:56 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:57 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:57 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:57 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:57 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:57 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:57 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:58 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:58 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:58 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:04:58 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:58 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:58 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:04:59 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:00 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:00 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:00 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:00 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:01 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:03 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:03 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:05 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:05 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:05 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:07 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:07 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:07 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:08 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:08 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:08 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:09 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:09 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:09 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:10 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:10 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:11 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:11 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:13 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:13 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:13 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:13 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:13 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:15 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:15 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:16 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:18 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:19 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:22 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:24 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:28 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:05:35 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:37 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:39 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:42 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:05:47 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:05:47 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:05:49 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:05:53 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:05:54 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:05:55 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:06:02 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:24:15 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:24:15 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:24:16 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:24:17 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:05 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:07 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:07 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:07 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:07 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:07 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:07 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:10 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:10 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:10 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:10 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:11 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:11 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:12 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:13 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:13 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:14 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:14 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:14 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:14 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:14 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:14 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:14 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:15 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:15 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:16 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:16 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:16 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:16 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:17 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:17 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:17 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:17 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:17 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:17 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:17 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:17 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:18 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:18 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:18 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:18 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:18 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:19 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:19 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:19 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:19 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:19 +0700] "CONNECT telegram.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:19 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:21 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:21 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:21 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:22 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:22 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:22 +0700] "CONNECT telegram.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:22 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:22 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:22 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:22 +0700] "CONNECT telegram.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:22 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:24 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:25 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:25 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:25 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:26 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:26 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:26 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:26 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:26 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:26 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:26 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:27 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:28 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:28 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:28 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:28 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:28 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:28 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:28 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:29 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:30 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:31 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:31 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:31 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:31 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:31 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:31 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:31 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:32 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:32 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:32 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:35 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:35 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:35 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:35 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:35 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:35 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:37 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:37 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:37 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:38 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:46:39 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:39 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:40 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:41 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:42 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:42 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:43 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:44 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:47 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:49 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:46:52 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:47:07 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:47:09 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:47:11 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:47:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:47:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:47:15 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:47:22 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:47:24 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:47:25 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:47:25 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:47:28 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:47:30 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:47:31 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:47:32 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:47:32 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:47:33 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:16:47:34 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:47:35 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:47:36 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:16:47:38 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:47:38 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:51:33 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:51:33 +0700] "CONNECT api.myip.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:51:34 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:16:51:34 +0700] "CONNECT api-gw-tg.memefi.club:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:25 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:27 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:27 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:29 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:29 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:29 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:31 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:31 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:31 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:32 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:33 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:33 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:34 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:34 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:34 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:35 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:35 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:35 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:35 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:35 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:35 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:35 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:39 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:39 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:39 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:40 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:41 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:41 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:42 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:42 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:42 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:42 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:46 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:46 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:46 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:47 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:47 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:49 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:49 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:49 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:49 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:49 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:49 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:50 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:50 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:50 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:50 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:50 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:51 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:51 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:52 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:53 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:55 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:55 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:55 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:55 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:55 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:56 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:57 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:57 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:31:57 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:58 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:31:58 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:00 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:00 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:32:01 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:01 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:04 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:32:04 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:04 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:32:04 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:32:11 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:32:11 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:17:32:27 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:29 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:31 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:40 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:17:32:40 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:17:32:47 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:17:32:50 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:17:32:53 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:17:32:57 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:17:33:00 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:18:13:06 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:08 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:08 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:11 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:11 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:13 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:14 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:14 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:15 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:15 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:15 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:15 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:15 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:15 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:16 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:16 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:16 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:16 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:17 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:17 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:18 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:19 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:19 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:19 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:19 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:19 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:19 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:19 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:20 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:20 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:20 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:20 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:20 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:21 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:21 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:22 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:23 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:23 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:23 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:24 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:24 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:25 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:26 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:27 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:27 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:27 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:27 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:27 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:27 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:28 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:28 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:29 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:29 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:30 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:30 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:30 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:30 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:30 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:30 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:31 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:32 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:32 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:33 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:33 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:34 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:34 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:36 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:36 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:36 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:36 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:36 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:37 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:37 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:37 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:38 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:38 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:39 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:40 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:40 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:40 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:42 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:42 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:43 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:43 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:44 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:44 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:13:46 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:57 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:13:59 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:18:14:08 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:14:10 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:14:12 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:14:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:14:15 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:14:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:14:22 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:18:14:23 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:18:14:23 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:18:14:23 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:18:14:27 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:18:14:27 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:18:14:31 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:53 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:55 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:16:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:56 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:57 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:57 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:57 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:58 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:16:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:58 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:59 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:16:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:16:59 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:16:59 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:01 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:01 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:01 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:02 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:02 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:02 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:03 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:03 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:03 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:04 +0700] "CONNECT telegram.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:04 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:04 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:04 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:04 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:04 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:05 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:06 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:06 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:06 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:06 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:06 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:06 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:06 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:06 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:07 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:07 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:07 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:07 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:07 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:08 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:09 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:09 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:09 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:09 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:09 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:09 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:09 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:09 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:10 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:10 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:11 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:12 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:12 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:12 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:12 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:12 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:13 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:13 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:14 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:14 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:14 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:14 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:14 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:14 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:16 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:16 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:16 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:16 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:16 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:17 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:17 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:17 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:17 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:18 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:18 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:19 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:20 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:20 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:21 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:21 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:21 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:21 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:21 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:21 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:21 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:22 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:22 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:24 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:24 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:25 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:25 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:25 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:26 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:26 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:26 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:26 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:26 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:26 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:27 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:29 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:29 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:29 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:30 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:30 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:31 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:32 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:33 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:33 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:34 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:42 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:49 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:55 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:56 +0700] "CONNECT blacklist.tampermonkey.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:17:58 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:17:59 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:18:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:18:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:18:04 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:18:08 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:18:08 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:18:10 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:18:14 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:18:14 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:18:16 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:18:25 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:53 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:55 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:56:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:55 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:56 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:56 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:56 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:57 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:56:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:57 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:56:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:00 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:00 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:01 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:01 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:01 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:01 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:01 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:02 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:02 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:02 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:02 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:03 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:03 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:03 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:04 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:04 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:05 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:05 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:06 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:07 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:08 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:10 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:11 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:11 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:11 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:12 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:12 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:12 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:12 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:12 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:12 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:12 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:12 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:12 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:12 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:12 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:13 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:13 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:13 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:13 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:13 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:13 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:14 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:15 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:18 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:18 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:19 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:19 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:19 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:21 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:22 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:23 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:23 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:25 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:25 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:25 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:25 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:25 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:25 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:27 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:27 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:27 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:28 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:29 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:30 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:33 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:33 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:35 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:36 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:40 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:40 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:42 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:42 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:42 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:42 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:42 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:44 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:44 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:46 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:51 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:57:55 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:57 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:57:58 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:58:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:58:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:58:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:20:58:03 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:58:06 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:20:58:07 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:58:08 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:58:10 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:58:17 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:58:27 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:58:27 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:20:58:47 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:15 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:17 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:17 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:18 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:18 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:18 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:21 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:22 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:22 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:22 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:23 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:23 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:23 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:24 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:24 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:24 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:24 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:24 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:24 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:24 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:25 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:25 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:25 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:26 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:26 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:26 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:26 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:26 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:26 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:26 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:26 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:26 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:26 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:28 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:28 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:28 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:28 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:28 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:28 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:29 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:29 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:29 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:30 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:31 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:31 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:31 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:32 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:34 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:35 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:35 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:35 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:35 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:36 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:37 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:37 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:37 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:37 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:37 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:38 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:39 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:39 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:39 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:40 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:40 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:40 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:40 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:40 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:40 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:40 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:41 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:41 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:43 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:43 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:43 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:43 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:43 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:44 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:44 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:44 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:44 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:45 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:45 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:46 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:47 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:47 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:48 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:48 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:48 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:48 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:48 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:50 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:50 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:52 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:52 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:37:54 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:54 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:37:56 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:38:00 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:38:02 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:38:05 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:38:17 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:38:19 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:38:20 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:38:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:38:22 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:38:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:38:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:21:38:31 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:21:38:31 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952463 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:21:38:32 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952424 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:21:38:35 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:21:38:36 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:21:38:48 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:21:38:55 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:01 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:03 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:04 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:04 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:04 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:04 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:05 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:05 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:05 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:05 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:06 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:07 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:07 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:08 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:09 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:09 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:10 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:10 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:10 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:10 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:10 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:11 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:11 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:12 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:13 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:14 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:16 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:16 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:17 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:17 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:18 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:18 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:18 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:18 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:18 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:18 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:20 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:20 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:22 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:23 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:23 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:24 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:24 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:25 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:27 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:30 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:16:33 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:16:35 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:17:03 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:17:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:17:08 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952423 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:17:09 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:17:10 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:17 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:18 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:19 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:19 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:19 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:20 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:20 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:20 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:20 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:20 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:20 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:20 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:20 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:20 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:20 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:22 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:22 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:22 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:22 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:22 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:23 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:25 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:25 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:25 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:25 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:27 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:27 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:28 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:31 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:33 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:33 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:33 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:33 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:35 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:35 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:35 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:35 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:35 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:35 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:37 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:37 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:37 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:44 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:48 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:49 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:18:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:51 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:18:51 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:19:18 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:19:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:19:23 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952462 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:19:25 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:19:26 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:19:28 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:22:57 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:22:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:22:59 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:22:59 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:22:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:22:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:22:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:00 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:01 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:02 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:04 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:04 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:04 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:04 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:04 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:05 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:05 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:05 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:06 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:06 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:06 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:06 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:06 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:06 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:07 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:07 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:07 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:07 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:07 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:08 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:08 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:08 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:08 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:08 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:09 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:09 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:09 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:09 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:09 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:09 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:09 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:09 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:10 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:10 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:11 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:11 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:12 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:13 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:13 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:13 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:13 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:13 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:14 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:14 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:14 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:14 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:14 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:14 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:14 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:14 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:14 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:15 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:15 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:15 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:15 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:15 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:15 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:16 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:17 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:17 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:19 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:19 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:19 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:20 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:20 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:20 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:21 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:21 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:21 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:21 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:22 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:22 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:22 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:25 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:28 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:28 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:29 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:29 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:30 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:32 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:32 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:32 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:32 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:32 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:32 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:34 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:36 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:37 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:37 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:38 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:38 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:38 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:38 +0700] "CONNECT api.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:38 +0700] "CONNECT ipinfo.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:39 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:39 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:39 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:39 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:39 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:39 +0700] "CONNECT wallapi.tappads.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:39 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:42 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:42 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:43 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:43 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:43 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:43 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:44 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:44 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:46 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:46 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:46 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:46 +0700] "CONNECT ipinfo.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:46 +0700] "CONNECT api.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:47 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:47 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT wallapi.tappads.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:48 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:49 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:49 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:51 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:51 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:51 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:52 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:53 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:54 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:54 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:54 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:54 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:54 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:54 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:55 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:55 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:55 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:55 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:55 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:55 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:56 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:57 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:58 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:58 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:58 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:58 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:23:58 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:23:59 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:01 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:01 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:01 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:01 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:03 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:04 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:04 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:05 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:06 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:07 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:07 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:07 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:07 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:07 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:09 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:10 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:12 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:16 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:18 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:25 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:26 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:30 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:30 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:30 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:31 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:32 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:33 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:33 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:33 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:34 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:34 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:34 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:35 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:36 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:36 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:36 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:36 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:37 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:38 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:38 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:38 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:41 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:43 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:43 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:44 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:45 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:45 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:45 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:45 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:45 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:46 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT api.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT ipinfo.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:48 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:49 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:49 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:49 +0700] "CONNECT wallapi.tappads.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:49 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:50 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:50 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:51 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:53 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:53 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:54 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:54 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:54 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:54 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:54 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:55 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:55 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:55 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:56 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:24:57 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:06 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:08 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:09 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:09 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:10 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:10 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:11 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:12 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:12 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:12 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:13 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:14 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:14 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:14 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:14 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:16 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:17 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:18 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:18 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:19 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:19 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:19 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:19 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:19 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:19 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:20 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:21 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:21 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:21 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:21 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:22 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:22 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:23 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:23 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:23 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:24 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:24 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:24 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:27 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:30 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:32 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:25:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:25:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:42 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:44 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:44 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:45 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:46 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:48 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:49 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:49 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:49 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:50 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:51 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:51 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:51 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:51 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:51 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:52 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:52 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:52 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:52 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:52 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:52 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:53 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:53 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:53 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:53 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:53 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:53 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:53 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:53 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:53 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:54 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:54 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:55 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:55 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:56 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:56 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:57 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:57 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:57 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:57 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:57 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:57 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:31:57 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:58 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:58 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:58 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:59 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:59 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:31:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:00 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:03 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:04 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:04 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:05 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:08 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:08 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:09 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:10 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:10 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:10 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:10 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:10 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:10 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:10 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:12 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT ipinfo.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT api.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:14 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:14 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:14 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:14 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:15 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT ipinfo.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT api.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:16 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:17 +0700] "CONNECT wallapi.tappads.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:17 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:18 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:18 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:19 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:19 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:19 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:20 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:20 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:20 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:20 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:21 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:21 +0700] "CONNECT wallapi.tappads.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:21 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:21 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:21 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:21 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:21 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:21 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:23 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:23 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:23 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:23 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:23 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:23 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:23 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:23 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:23 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:24 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:24 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:24 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:25 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:25 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:25 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:25 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:25 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:25 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:26 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:26 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:26 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:26 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:26 +0700] "CONNECT ipinfo.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:26 +0700] "CONNECT api.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:27 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:27 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:27 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:27 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:27 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:27 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:27 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:27 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:27 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:28 +0700] "CONNECT wallapi.tappads.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:29 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:29 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:29 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:30 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:30 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:31 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:31 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:31 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:32 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:32 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:33 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:33 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:33 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:33 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:32:34 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:46 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:47 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:32:53 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952462 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:32:54 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952423 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:32:58 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:32:58 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:32:59 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:33:01 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:50 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:52 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:52 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:53 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:54 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:54 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:56 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:56 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:56 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:56 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:56 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:56 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:56 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:57 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:57 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:57 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:58 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:58 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:58 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:58 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:58 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:59 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:59 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:59 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:59 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:38:59 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:38:59 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:00 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:00 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:00 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:00 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:01 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:01 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:01 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:01 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:01 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:01 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:01 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:02 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:03 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:03 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:04 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:04 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:04 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:04 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:04 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:04 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:05 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:06 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:10 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:11 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:11 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:11 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:12 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:12 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:12 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:13 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:13 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:13 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:13 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:14 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:14 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:15 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:15 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:15 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:17 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:18 +0700] "CONNECT telegram.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:18 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:18 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:18 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:18 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:18 +0700] "CONNECT ipinfo.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:18 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:18 +0700] "CONNECT api.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:19 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:19 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:19 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:19 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:19 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:19 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:19 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:19 +0700] "CONNECT unpkg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:19 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:19 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:19 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:20 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:20 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:20 +0700] "CONNECT wallapi.tappads.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:22 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:22 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:22 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:22 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:23 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:23 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:23 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:23 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:23 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:23 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:23 +0700] "CONNECT api.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:23 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:23 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:23 +0700] "CONNECT api.agent301.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:23 +0700] "CONNECT ipinfo.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:24 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:24 +0700] "CONNECT ipinfo.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:24 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:24 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:24 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:24 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:24 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:25 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:26 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:27 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:27 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:27 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:27 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:28 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:28 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:29 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:29 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:29 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:29 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:29 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:29 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:29 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:30 +0700] "CONNECT wallapi.tappads.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:30 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:30 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:30 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:30 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:30 +0700] "CONNECT wallapi.tappads.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:31 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:32 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:32 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:32 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:32 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:32 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:32 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:32 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:32 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:32 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:32 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:33 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:34 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:34 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:34 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:34 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:34 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:34 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:34 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:34 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:34 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:34 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:34 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:35 +0700] "CONNECT s1.bycsi.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:22:39:36 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:36 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:52 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:54 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:55 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:56 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952462 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:39:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:39:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:40:00 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:40:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:22:40:01 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952462 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:40:02 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952423 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:40:05 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:22:40:07 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:23:12:37 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:12:40 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:12:42 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:19 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:20 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:21 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:23 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:23 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:24 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:24 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:24 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:24 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:24 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:24 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:24 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:24 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:25 +0700] "CONNECT cdn4.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:25 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:25 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:25 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:25 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:25 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:25 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:26 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:26 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:27 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:27 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:27 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:27 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:28 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:28 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:28 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:30 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:32 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:32 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:32 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:33 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:33 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:34 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:34 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:36 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:36 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:36 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:36 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:36 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:36 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:36 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:36 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:36 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:36 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:37 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:37 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:37 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:37 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:38 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:38 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:38 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:40 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:40 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:40 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:40 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:40 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:40 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:40 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:41 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:41 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:41 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:42 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:42 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:42 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:42 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:43 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:45 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:45 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:45 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:45 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:45 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:46 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:51 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:52 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:52 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:52 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:52 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:52 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:52 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:52 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:52 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:52 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:52 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:53 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:53 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:54 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:54 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:55 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:56 +0700] "CONNECT user-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:57 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:57 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:57 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:57 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:58 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:58 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:58 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:58 +0700] "CONNECT eu.i.posthog.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:42:58 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:58 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:58 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:58 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:58 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:58 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:42:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:00 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:00 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:00 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:01 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:03 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:03 +0700] "CONNECT wallet-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:03 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:04 +0700] "CONNECT tribe-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:04 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:04 +0700] "CONNECT game-domain.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:07 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:07 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:07 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:07 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:07 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:10 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:12 +0700] "CONNECT s3.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:13 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:15 +0700] "CONNECT telegram.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:21 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:23 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:24 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:39 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:23:43:43 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:23:43:46 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:46 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:43:57 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:43:58 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952462 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:23:43:59 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952462 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:23:44:00 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:23:44:06 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:23:44:13 +0700] "CONNECT sentry.blum.codes:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:44:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:17 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:20 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:23 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:23 +0700] "CONNECT ogads-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:23 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:24 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:26 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:26 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:27 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:27 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:27 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:28 +0700] "CONNECT flora.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:28 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:28 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:28 +0700] "CONNECT kws5.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:29 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:29 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:29 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:29 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:29 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:29 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:29 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:29 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:51:29 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:29 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:30 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:32 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:42 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:46 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:51:49 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:52:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:52:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:52:17 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:52:20 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:52:24 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/p54m6of4j3whocrxqlcj6dhhkm_20240902.672363756.14/obedbbhbpmojnkanicioggnmelmoomoc_20240902.672363756.14_all_VI500000_ad2t6jfsw6ymioheps2hs3whju7a.crx3 HTTP/1.1" 200 2952423 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:23:52:24 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:52:25 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 42.118.214.68 - admin [16/Sep/2024:23:53:24 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:54:00 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:54:00 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:54:22 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:54:24 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:54:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:54:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:54:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:54:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:54:26 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 42.118.214.68 - admin [16/Sep/2024:23:54:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 42.118.214.68 - admin [16/Sep/2024:23:54:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196"