00010001 1.53.56.127 - admin [30/Apr/2025:00:11:32 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:16 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:16 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:18 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:18 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:19 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:19 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:19 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:19 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:19 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:20 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:20 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:20 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:20 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:21 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:22 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:22 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:22 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:22 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:22 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:22 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:22 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:22 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:23 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:23 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:23 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:23 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:23 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:24 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:24 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:24 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:24 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:24 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:24 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:24 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:24 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:12:25 +0700] "CONNECT monad-files.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:25 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:25 +0700] "CONNECT sockjs-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:27 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:12:49 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:05 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:15 +0700] "CONNECT twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:15 +0700] "CONNECT twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:16 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:18 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:19 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:19 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:19 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:19 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:19 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:19 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:19 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:20 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:20 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:20 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:20 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:20 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:21 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:21 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:21 +0700] "CONNECT google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:21 +0700] "CONNECT google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:23 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:23 +0700] "CONNECT appleid.cdn-apple.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:23 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:24 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:24 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:25 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:25 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:25 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:26 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:31 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:33 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:34 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:34 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:34 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:36 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:37 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:37 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:37 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:37 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:37 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:37 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:37 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:37 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:40 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:46 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:46 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:48 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:48 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:48 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:48 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:48 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:49 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:49 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:49 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:49 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:13:50 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:50 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:51 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:52 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:13:53 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:14:06 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:11 +0700] "CONNECT twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:13 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:14:13 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:14:13 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:13 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:13 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:13 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:14:13 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:13 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:14:13 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:14:13 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:14 +0700] "CONNECT ads-api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:15 +0700] "CONNECT ads-api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:16 +0700] "CONNECT cm.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:23 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:26 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:14:27 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:14:27 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:28:12 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:28 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:34:28 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:29 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:29 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:30 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:31 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:31 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:31 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:31 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:32 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:32 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:32 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:32 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:32 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:32 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:33 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:34:33 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:33 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:33 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:33 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:34:34 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:34:34 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:34:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:34:34 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:34:35 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:35 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:35 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:35 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:35 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:35 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:35 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:35 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:35 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:35 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:35 +0700] "CONNECT img.reservoir.tools:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:36 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:36 +0700] "CONNECT monad-files.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:37 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:37 +0700] "CONNECT sockjs-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:37 +0700] "CONNECT monad-files.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:39 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:34:50 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:34:59 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:03 +0700] "CONNECT twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:03 +0700] "CONNECT twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:05 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:07 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:07 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:07 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:07 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:07 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:07 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:07 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:09 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:09 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:09 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:09 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:09 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:09 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:09 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:09 +0700] "CONNECT google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:09 +0700] "CONNECT google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:09 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:11 +0700] "CONNECT appleid.cdn-apple.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:11 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:11 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:11 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:13 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:13 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:13 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:13 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:14 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:14 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:22 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:23 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:29 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:48 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:54 +0700] "CONNECT twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:54 +0700] "CONNECT twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:54 +0700] "CONNECT twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:54 +0700] "CONNECT twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:54 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:54 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:54 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:54 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:55 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:55 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:55 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:55 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:55 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:55 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:55 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:35:56 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:56 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:35:59 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:36:10 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:36:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:36:33 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:36:33 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:36:35 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:36:35 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:36:35 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:36:35 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:36:35 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:36:35 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:36:35 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:36:36 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:36:37 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:36:38 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:36:39 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:36:40 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:37:08 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:37:13 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:37:17 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:37:17 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:37:18 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:37:19 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:37:34 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:37:34 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:37:34 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:37:34 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:37:34 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:37:35 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:37:35 +0700] "CONNECT ads-api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:37:36 +0700] "CONNECT ads-api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:37:37 +0700] "CONNECT cm.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:38:11 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:38:13 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:38:13 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:38:15 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:38:15 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:38:17 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:00:38:17 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:38:18 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:54:27 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:00:55:58 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:45 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:45 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:47 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:48 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:48 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:49 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:49 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:49 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:50 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:50 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:50 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:51 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:51 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:51 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:52 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:52 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:52 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:52 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:52 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:53 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:53 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:54 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:54 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:54 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:54 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:54 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:54 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:54 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:57 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:09:57 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:09:59 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:10:47 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:10:51 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:10:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:11:48 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:11:49 +0700] "CONNECT proxsee.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:11:51 +0700] "CONNECT proxsee.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:11:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:12:44 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:12:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:25 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:25 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:26 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:27 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:27 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:27 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:28 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:29 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:29 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:29 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:30 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:30 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:30 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:30 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:31 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:31 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:31 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:31 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:32 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:33 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:33 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:33 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:33 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:33 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:33 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:33 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:35 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:36 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:19:38 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:38 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:19:38 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:20:26 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:20:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:21:11 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:21:28 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:21:30 +0700] "CONNECT proxsee.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:21:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:21:32 +0700] "CONNECT proxsee.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:22:05 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:32:54 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:38:41 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:46:35 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:46:53 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:46:58 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:47:09 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:47:15 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:47:31 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:47:44 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:47:55 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:48:05 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:49:46 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:01:54:12 +0700] "CONNECT cdn.discordapp.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:01:54:27 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:48 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:48 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:05:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:50 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:05:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:55 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:55 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:56 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:56 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:58 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:05:59 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:00 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:01 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:10 +0700] "CONNECT gas.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:11 +0700] "CONNECT chainid.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:11 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:13 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:06:14 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:14 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:14 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:14 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:15 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:15 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:06:15 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:15 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:15 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:16 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:17 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:17 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:18 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:18 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:18 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:19 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:19 +0700] "CONNECT sockjs-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:06:29 +0700] "CONNECT www.4byte.directory:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:06:50 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:06:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:07:32 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:07:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:07:55 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:04 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:04 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:06 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:10 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:10 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:10 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:10 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:12 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:14 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:14 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:15 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:24 +0700] "CONNECT gas.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:24 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:26 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:26 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:27 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:27 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:27 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:10:27 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:27 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:28 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:29 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:29 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:29 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:29 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:30 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:31 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:32 +0700] "CONNECT sockjs-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:10:41 +0700] "CONNECT www.4byte.directory:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:42 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:45 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:45 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:45 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:46 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:46 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:46 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:46 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:47 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:47 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:47 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:47 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:48 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:51 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:51 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:54 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:54 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:54 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:54 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:54 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:55 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:57 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:57 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:57 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:57 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:57 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:57 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:57 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:10:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:58 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:58 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:58 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:58 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:58 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:59 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:10:59 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:00 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:00 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:00 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:00 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:00 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:00 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:00 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:00 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:00 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:00 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:00 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:01 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:01 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:01 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:01 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:01 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:01 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:01 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:01 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:01 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:01 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:11:05 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:06 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:10 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:10 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:10 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:10 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:11:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:11 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:12 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:14 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:15 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:15 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:16 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:17 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:19 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:19 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:20 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:20 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:20 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:21 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:21 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:21 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:21 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:21 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:21 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:22 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:22 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:22 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:22 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:23 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:23 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:23 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:23 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:23 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:23 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:23 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:23 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:24 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:11:24 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:25 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:27 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:27 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:28 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:29 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:30 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:31 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:31 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:31 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:31 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:31 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:32 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:32 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:42 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:42 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:11:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:11:48 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:11:50 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:12:04 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:04 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:04 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:04 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:04 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:04 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:04 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:04 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:06 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:06 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:08 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:09 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:30 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:32 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:32 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:32 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:33 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:33 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:34 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:34 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:34 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:34 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:35 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:35 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:35 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:36 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:39 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:12:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:41 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:41 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:41 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:41 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:41 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:41 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:42 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:12:43 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:12:43 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:43 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:43 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:43 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:43 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:43 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:43 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:44 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:45 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:45 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:12:45 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:45 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:45 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:12:46 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:46 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:46 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:46 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:48 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:49 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:49 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:49 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:49 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:49 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:49 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:49 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:12:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:53 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:54 +0700] "CONNECT gas.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:54 +0700] "CONNECT www.4byte.directory:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:55 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:57 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:57 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:58 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:12:58 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:58 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:58 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:58 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:58 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:58 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:58 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:12:59 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:59 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:12:59 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:00 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:13:01 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:01 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:01 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:13:02 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:13:03 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:04 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:04 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:04 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:04 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:05 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:05 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:05 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:05 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:05 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:05 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:05 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:05 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:06 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:06 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:06 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:06 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:06 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:06 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:06 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:07 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:07 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:07 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:07 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:07 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:08 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:08 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:08 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:08 +0700] "CONNECT heapanalytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:08 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:09 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:09 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:09 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:10 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:10 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:10 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:10 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:10 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:12 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:13 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:13 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:14 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:16 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:17 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:17 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:17 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:18 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:20 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:29 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:31 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:35 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 1.53.56.127 - admin [30/Apr/2025:02:13:36 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:13:38 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 1.53.56.127 - admin [30/Apr/2025:02:13:41 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:49 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:51 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:51 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:51 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:51 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:51 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:51 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:51 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:51 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:13:58 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:14:00 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:14:00 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:14:00 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:14:00 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:14:00 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:14:00 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:14:05 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:14:07 +0700] "CONNECT heapanalytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:14:11 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:14:11 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:14:11 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:14:11 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:14:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:14:33 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:14:41 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:14:41 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:14:56 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:15:11 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:15:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:15:54 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:15:54 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:15:54 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:15:55 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:15:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:15:55 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:15:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:15:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:15:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:15:56 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:15:57 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:16:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:00 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:16:00 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:16:00 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:16:03 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:16:03 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:03 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:16:04 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:16:05 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:16:06 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:12 +0700] "CONNECT gas.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:13 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:16 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:16 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:16:16 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:16 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:16 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:16 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:16 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:16 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:18 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:19 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:20 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:16:23 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:16:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:16:41 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:16:55 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:17:00 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:17:05 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:17:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:17:42 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:17:43 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:17:50 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:17 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:17 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:18 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:23 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:23 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:24 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:24 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:25 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:28 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:18:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:33 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:34 +0700] "CONNECT gas.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:35 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:37 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:37 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:37 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:37 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:38 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:38 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:38 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:38 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:38 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:39 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:40 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:18:41 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:18:42 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:19:01 +0700] "CONNECT www.4byte.directory:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:19:18 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:19:23 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:19:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:19:40 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:19:52 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:13 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:20 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:20 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:21 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:26 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:27 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:28 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:28 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:28 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:20:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:31 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:37 +0700] "CONNECT gas.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:38 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:41 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:41 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:41 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:41 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:41 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:41 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:42 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:42 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:43 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:44 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:20:45 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:20:46 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:21:12 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:21:14 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:21:21 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:21:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:21:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:21:36 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:21:50 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:21:55 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:05 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:06 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:06 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:06 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:07 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:07 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:07 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:08 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:08 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:08 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:08 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:08 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:08 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:08 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:08 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:08 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:08 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:09 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:09 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:09 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:09 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:09 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:10 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:13 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:13 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:14 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:14 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:14 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:15 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:17 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:17 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:18 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:18 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:18 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:18 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:19 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:20 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:20 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:20 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:20 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:21 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:21 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:23 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:26 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:27 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:34 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:34 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:35 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:35 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:35 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:35 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:35 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:35 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:35 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:36 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:36 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:37 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:37 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:39 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:39 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:39 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:39 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:40 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:50 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:52 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:52 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:52 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:52 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:55 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:55 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:22:55 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:59 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:22:59 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:23:00 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:23:01 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:23:01 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:23:02 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:23:02 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:23:03 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:23:05 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:23:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:23:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:23:10 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:23:12 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:23:12 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:23:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:23:43 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:23:43 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:23:49 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:09 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:11 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:12 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:12 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:12 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:12 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:13 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:13 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:14 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:17 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:19 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:21 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:22 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:23 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:23 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:24 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:24 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:24 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:24 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:24 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:24 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:24 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:24 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:24 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:25 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:25 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:25 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:25 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:25 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:25 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:25 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:25 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:25 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:26 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:30 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:36 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:38 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:38 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:38 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:38 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:38 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:38 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:38 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:39 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:39 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:40 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:42 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:49 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:54 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:55 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:55 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:55 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:55 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:56 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:56 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:24:58 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:59 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:59 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:59 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:59 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:59 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:59 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:24:59 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:25:01 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:01 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:03 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:25:03 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:03 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:25:03 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:25:04 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:04 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:25:04 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:09 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:25:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:25:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:15 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:25:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:18 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:25:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:25 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:45 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:45 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:25:52 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:12 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:16 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:16 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:17 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:17 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:24 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:24 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:25 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:26 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:26 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:27 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:27 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:27 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:27 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:27 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:27 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:27 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:28 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:28 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:29 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:34 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:35 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:35 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:35 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:35 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:35 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:35 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:36 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:37 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:38 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:38 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:38 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:41 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:42 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:46 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:47 +0700] "CONNECT cdnjs.cloudflare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:47 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:47 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:48 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:49 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:49 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:49 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:49 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:49 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:50 +0700] "CONNECT firebase.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:50 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:51 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:51 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:52 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:52 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:52 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:52 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:52 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:52 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:26:54 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:56 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:56 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:56 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:56 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:26:56 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:00 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:27:07 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:27:08 +0700] "CONNECT manager.eu.smartlook.cloud:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:12 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:15 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:18 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:27:20 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:27:26 +0700] "CONNECT cdn1.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:26 +0700] "CONNECT cdn4.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:26 +0700] "CONNECT cdn4.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:26 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:26 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:33 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:33 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:33 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:33 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:33 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:27:33 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:33 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:50 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:50 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:58 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:58 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:27:59 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:13 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:17 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:17 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:17 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:17 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:17 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:18 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:18 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:18 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:18 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:19 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:24 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:25 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:25 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:25 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:25 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:25 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:26 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:26 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:26 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:27 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:28 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:29 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:29 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:29 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:29 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:29 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:29 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:29 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:30 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:31 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:31 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:33 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:33 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:34 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:37 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:38 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:38 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:38 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:38 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:39 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:41 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:41 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:42 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:42 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:43 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:43 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:44 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:44 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:44 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:44 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:44 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:44 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:45 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:45 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:45 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:45 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:46 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:28:47 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:47 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:47 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:47 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:47 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:49 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:49 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:49 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:49 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:49 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:49 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:49 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:49 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:49 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:51 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:52 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:28:59 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:29:00 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:29:00 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:29:00 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:29:00 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:29:00 +0700] "CONNECT s3.us-west-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:29:03 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:29:03 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:29:06 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:29:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:29:06 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:29:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:29:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:29:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:29:08 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:29:08 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:29:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:29:13 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:29:13 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:29:13 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:29:13 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:29:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:29:14 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:29:16 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:29:16 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:29:16 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:29:19 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:29:21 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:29:23 +0700] "CONNECT d2ly5wctnygv5n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:29:25 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:30:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:30:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:03 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:05 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:05 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:08 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:10 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:11 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:13 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:15 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:15 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:16 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:16 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:16 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:17 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:17 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:17 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:19 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:19 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:19 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:19 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:19 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:20 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:20 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:22 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:23 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:23 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:23 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:25 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:25 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:26 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:26 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:26 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:26 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:27 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:28 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:31:28 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:28 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:30 +0700] "CONNECT gas.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:30 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:31:30 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:32 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:32 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:33 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:33 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:33 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:33 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:33 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:34 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:35 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:35 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:36 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:31:36 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:31:38 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:16 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:16 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:18 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:18 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:19 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:19 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:19 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:19 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:19 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:19 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:20 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:20 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:20 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:22 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:22 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:22 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:25 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:25 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:27 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:33 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:34 +0700] "CONNECT gas.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:35 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:36 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:37 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:37 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:37 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:37 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:37 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:38 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:38 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:38 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:38 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:38 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:40 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:40 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:40 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:33:41 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:42 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:33:42 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:10 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:14 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:14 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:14 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:14 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:15 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:15 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:15 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:15 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:15 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:19 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:19 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:21 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:22 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:24 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:24 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:24 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:24 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:24 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:24 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:24 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:25 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:25 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:26 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:26 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:26 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:26 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:26 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:27 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:27 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:27 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:30 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:30 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:30 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:30 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:30 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:30 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:31 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:31 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:31 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:31 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:31 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:31 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:31 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:39 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:39 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:41 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:42 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:42 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:45 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:47 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:47 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:47 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:47 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:47 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:47 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:48 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT heapanalytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:49 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:50 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:50 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:50 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:50 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:50 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:50 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:50 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:50 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:50 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:51 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:53 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:54 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:55 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:56 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:57 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:57 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:57 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:58 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:37:59 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:37:59 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:05 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:10 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:16 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:38:18 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:38:19 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:27 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:27 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:27 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:27 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:27 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:27 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:27 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:27 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:27 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:30 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:40 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:50 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:53 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:53 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:54 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:54 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:54 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:55 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:55 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:55 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:38:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:38:59 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:00 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:02 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:02 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:02 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:02 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:02 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:02 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:06 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:06 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:06 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:06 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:06 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:07 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:08 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:09 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:10 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:15 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:18 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:18 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:19 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:19 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:20 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:20 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:22 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:23 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:23 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:24 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:24 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:24 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:24 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:25 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:25 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:25 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:25 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:26 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:26 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:26 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:27 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:27 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:27 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:27 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:27 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:27 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:27 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:27 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:27 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:27 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:28 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:28 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:28 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:28 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:28 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:28 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:29 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:29 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:32 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:32 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:33 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:36 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:37 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:37 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:37 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:39:50 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:39:56 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:39:58 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:40:04 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:40:06 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:40:06 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:40:06 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:40:06 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:40:06 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:40:06 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:40:06 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:40:06 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:40:06 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:40:06 +0700] "CONNECT heapanalytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:40:12 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:40:12 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:40:12 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:40:12 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:40:12 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:40:12 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:40:20 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:40:23 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:40:23 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:40:23 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:40:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:41:29 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:41:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:42:12 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:42:12 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:42:13 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:42:25 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:42:27 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:42:39 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:42:42 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:42:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:42:58 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:43:09 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:43:09 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:43:09 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:43:31 +0700] "CONNECT heapanalytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:43:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:44:01 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:44:11 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:44:46 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:44:46 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:44:46 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:44:46 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:44:46 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:44:46 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:44:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:45:23 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:45:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:46:02 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:46:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:47:28 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:47:30 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:47:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:52 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:52 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:54 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:54 +0700] "CONNECT cloud.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:55 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:55 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:55 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:55 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:55 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:55 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:55 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:55 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:56 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:56 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:56 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:56 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:56 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:56 +0700] "CONNECT quest.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:56 +0700] "CONNECT aistudio.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:57 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:57 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:57 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:57 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:58 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:58 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:58 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:58 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:58 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:58 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:58 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:59 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:59 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:59 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:59 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:47:59 +0700] "CONNECT mc.yandex.ru:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:59 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:47:59 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:48:00 +0700] "CONNECT monad-api.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:48:00 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:48:01 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:48:02 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:48:03 +0700] "CONNECT ws-eu.pusher.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:48:03 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:48:07 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:48:07 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:48:08 +0700] "CONNECT gas.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:48:08 +0700] "CONNECT chainid.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:48:24 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:48:25 +0700] "CONNECT monad-files.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:48:29 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:48:45 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:48:53 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:48:53 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:48:53 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:48:54 +0700] "CONNECT api.etherscan.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:48:58 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:48:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:48:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:00 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:01 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:02 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:02 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:02 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:03 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:03 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:03 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:03 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:04 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:04 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:49:06 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:07 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:07 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:14 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:15 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:16 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:18 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:18 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:18 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:18 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:18 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:18 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:18 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:19 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:20 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:20 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:21 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:49:25 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:25 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:25 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:27 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:32 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:32 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:33 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:33 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:33 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:33 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:34 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:34 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:34 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:34 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:35 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:49:35 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:35 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:36 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:37 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:37 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:37 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:37 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:40 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:49:46 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:52 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:49:53 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:54 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:57 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:58 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:49:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:58 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:58 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:58 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:58 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:58 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:58 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:49:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:49:58 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:50:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:50:01 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:01 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:01 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:01 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:02 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:02 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:02 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:02 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:03 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:50:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:50:03 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:03 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:04 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:05 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:05 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:50:05 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:50:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:08 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 1.53.56.127 - admin [30/Apr/2025:02:50:08 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:50:08 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:50:08 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:50:08 +0700] "CONNECT monad.talentum.id:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:50:09 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:12 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:16 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:24 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:45 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:45 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:53 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:50:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:17 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:19 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:20 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:20 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:20 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:21 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:21 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:21 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:21 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:51:22 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:22 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:51:22 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:22 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:22 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:22 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:26 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:26 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:30 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:31 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:31 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:31 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:31 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:31 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:31 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:33 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:34 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:35 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:40 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:46 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:46 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:47 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:47 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:47 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:56 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:57 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:59 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:59 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:51:59 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:51:59 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:01 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:02 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:02 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:03 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:04 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:04 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:04 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:04 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:04 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:04 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:52:05 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:52:05 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:06 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:06 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:07 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:07 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:08 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:08 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:08 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:09 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:09 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:52:13 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:14 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:17 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:19 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:23 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:52:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:52:25 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 1.53.56.127 - admin [30/Apr/2025:02:52:46 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:52:51 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:54 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:54 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:55 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:52:56 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:03 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:25 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:28 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:28 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:28 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:30 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:35 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:37 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:37 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:37 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:37 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:37 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:37 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:38 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:38 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:45 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:45 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:45 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:45 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:46 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:47 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:47 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:47 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:47 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:47 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:47 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:47 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:47 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:47 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:48 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:49 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:49 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:49 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:50 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:51 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:53 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:54 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:55 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:55 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:57 +0700] "CONNECT cdnjs.cloudflare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:57 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:58 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:53:59 +0700] "CONNECT firebase.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:53:59 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:00 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:00 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:01 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:02 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:02 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:02 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:02 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:02 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:03 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:06 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:06 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:06 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:06 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:06 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:07 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:11 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:16 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:17 +0700] "CONNECT manager.eu.smartlook.cloud:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:20 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:20 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:21 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:23 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:23 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:23 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:23 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:24 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:24 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:24 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:24 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:25 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:25 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:25 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:25 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:26 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:26 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:26 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:26 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:27 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:27 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:27 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:28 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:28 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:29 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:29 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:29 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:29 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:29 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:29 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:54:29 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:31 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:31 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 1.53.56.127 - admin [30/Apr/2025:02:54:31 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:32 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:32 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:54:32 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:33 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:54:36 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:36 +0700] "CONNECT cdn1.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:36 +0700] "CONNECT cdn4.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:36 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:44 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:44 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:44 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:45 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:45 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:45 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:45 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:54:45 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:54:47 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:00 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:01 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:09 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:09 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:55:10 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:14 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:55:21 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:55:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:27 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:29 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:30 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:31 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:32 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:32 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:33 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:33 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:33 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:33 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:33 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:34 +0700] "CONNECT blocklist.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:38 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:38 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:38 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:39 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:39 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:39 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:39 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:40 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:41 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:41 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:42 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:43 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:45 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:48 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:49 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:50 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:50 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:50 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:55:50 +0700] "CONNECT contracts-api.mintair.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:55:52 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:53 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:54 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:55:54 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:54 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:54 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:54 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:55 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:56 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:55:56 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:56 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:55:58 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:55:58 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:58 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:58 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:58 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:58 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:58 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:58 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:58 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:55:59 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:02:56:00 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:02 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:04 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:06 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:07 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:09 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:11 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:11 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:56:11 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:12 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:12 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:12 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:12 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:12 +0700] "CONNECT s3.us-west-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:13 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:15 +0700] "CONNECT contracts-api.mintair.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:18 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:20 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:20 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:25 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:26 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:27 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:27 +0700] "CONNECT proxsee.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:29 +0700] "CONNECT proxsee.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:33 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:56:34 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:56:35 +0700] "CONNECT d2ly5wctnygv5n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:56:36 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:02:56:37 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:02:56:41 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:57:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:57:55 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:57:59 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:11 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:26 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:26 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:29 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:29 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:30 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:31 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:32 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:32 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:35 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:35 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:02:58:36 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:36 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:39 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:40 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:40 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:41 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:41 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:48 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:02:58:48 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:00:22 +0700] "CONNECT quills.fun:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:26 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:26 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:28 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:28 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:29 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:29 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:29 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:29 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:30 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:30 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:30 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:31 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:31 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:31 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:32 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:32 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:32 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:32 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:33 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:34 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:34 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:34 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:34 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:34 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:34 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:36 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:37 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:38 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:38 +0700] "CONNECT proxsee.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:40 +0700] "CONNECT proxsee.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:03:43 +0700] "CONNECT prod-fastly-us-west-2.video.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:03:43 +0700] "CONNECT prod-fastly-us-west-2.video.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:04:05 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:04:05 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:04:28 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:04:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:04:55 +0700] "CONNECT generativelanguage.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:05:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:05:35 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:05:38 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:06:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:21:33 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:03:48:59 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:54:27 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:03:57:20 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:04:33:22 +0700] "CONNECT testnet.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:36:31 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:36:34 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:38:52 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:04:38:54 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:38:56 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:38:58 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:39:00 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:39:02 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:39:04 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:39:06 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:39:08 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:39:10 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:41:34 +0700] "CONNECT quest.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:04:42:12 +0700] "CONNECT quest.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:04:43:49 +0700] "CONNECT quest.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:04:45:25 +0700] "CONNECT quills.fun:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:37 +0700] "CONNECT contracts-api.mintair.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:39 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:41 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:43 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:45 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:47 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:49 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:51 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:53 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:55 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:57 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:47:59 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:48:01 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:48:02 +0700] "CONNECT contracts-api.mintair.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:04:54:27 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:05:02:38 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:05:32:23 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:25 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:26 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:27 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:28 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:28 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:29 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:29 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:29 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:29 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:29 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:30 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:30 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:34 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:36 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:38 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:39 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:40 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:40 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:40 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:40 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:40 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:40 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:41 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:41 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:41 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:42 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:42 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:42 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:42 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:42 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:42 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:42 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:42 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:42 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:42 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:43 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:43 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:43 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:43 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:43 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:43 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:44 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:45 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:45 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:46 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:48 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:50 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:54 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:55 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:56 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:47:56 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:58 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:47:58 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:00 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:01 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:01 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:02 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:02 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:02 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:02 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:03 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:03 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:03 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:03 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:03 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:04 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:04 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:05 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:05 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:05 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:05 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:05 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:05 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:05 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:05 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:06 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:06 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:06 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:06 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:06 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:06 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:06 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:08 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:10 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:10 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:12 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:12 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:13 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:14 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:14 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:14 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:15 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:15 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:21 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:25 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:31 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:05:48:34 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:35 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:05:48:36 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:40 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:47 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:47 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:47 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:47 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:47 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:47 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:47 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:47 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:48:47 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:50 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:50 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:48:53 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:14 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:17 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:17 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:18 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:18 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:18 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:18 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:18 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:18 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:22 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:22 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:25 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:26 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:28 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:28 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:28 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:29 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:29 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:29 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:31 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:32 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:32 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:34 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:35 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:37 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:41 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:42 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:43 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:44 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:44 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:45 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:47 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:47 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:48 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:48 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:48 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:49 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:49 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:49 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:49 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:49 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:49 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:50 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:51 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:51 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:51 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:51 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:51 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:51 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:51 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:51 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:51 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:51 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:52 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:53 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:53 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:53 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:53 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:53 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:53 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:54 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:56 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:56 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:56 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:49:57 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:49:59 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:00 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:00 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:00 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:06 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:13 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:20 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:05:50:23 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:05:50:30 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:34 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:34 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:34 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:34 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:34 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:34 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:34 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:34 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:35 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:43 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:43 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:43 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:43 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:43 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:43 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:50:44 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:50:49 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:51:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:51:22 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:51:52 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:52:05 +0700] "CONNECT heapanalytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:52:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:52:44 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:52:46 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:52:58 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:52:58 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:53:00 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:53:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:53:28 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:05:54:11 +0700] "CONNECT cdn.discordapp.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:54:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:05:54:26 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:54:27 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:55:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:56:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:56:53 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:57:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:57:24 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:57:24 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:57:55 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:57:57 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:58:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:16 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:23 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:32 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:36 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:36 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:36 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:36 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:36 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:37 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:37 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:37 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:37 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:40 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:41 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:43 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:44 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:44 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:44 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:45 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:45 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:45 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:45 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:46 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:46 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:46 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:47 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:05:59:48 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:48 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:05:59:49 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:01 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:01 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:02 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:02 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:02 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:02 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:07 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:10 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:12 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:14 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:14 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:14 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:15 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:15 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:15 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:17 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:19 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:20 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:20 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:20 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:20 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:20 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:20 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:23 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:23 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:25 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:25 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:25 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:26 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:26 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:26 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:26 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:29 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:32 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:00:33 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:38 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:00:39 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:00:39 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:00:43 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:07 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:07 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:13 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:33 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:36 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:36 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:36 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:36 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:36 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:37 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:38 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:38 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:41 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:41 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:43 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:44 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:44 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:46 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:48 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:48 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:48 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:48 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:48 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:48 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:48 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:49 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:49 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:01:52 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:01:55 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:01 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:02 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:02 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:12 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:12 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:12 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:12 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:14 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:14 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:14 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:14 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:14 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:14 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:16 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:16 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:18 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:18 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:18 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:18 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:18 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:18 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:20 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:20 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:22 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:22 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:22 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:22 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:23 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:23 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:23 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:28 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:32 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:02:34 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:02:38 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:02:40 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:03:05 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:05 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:05 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:06 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:07 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:14 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:33 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:36 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:36 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:36 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:36 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:37 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:37 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:37 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:37 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:43 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:43 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:43 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:44 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:49 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:55 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:55 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:55 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:55 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:55 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:55 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:55 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:56 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:56 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:57 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:57 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:57 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:57 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:57 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:57 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:57 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:57 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:57 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:57 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:58 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:58 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:58 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:58 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:58 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:58 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:58 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:58 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:58 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:58 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:58 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:03:59 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:03:59 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:02 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:02 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:04 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:04 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:05 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:05 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:06 +0700] "CONNECT cdnjs.cloudflare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:08 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:09 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:09 +0700] "CONNECT firebase.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:10 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:11 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:15 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:15 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:16 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:16 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:16 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:16 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:16 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:21 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:26 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:26 +0700] "CONNECT manager.eu.smartlook.cloud:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:32 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:34 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:38 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:04:41 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:04:43 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:44 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:44 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:45 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:45 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:45 +0700] "CONNECT cdn4.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:45 +0700] "CONNECT cdn1.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:46 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:04:52 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:52 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:52 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:04:52 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:00 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:10 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:15 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:20 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:20 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:21 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:34 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:37 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:37 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:37 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:37 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:37 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:37 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:37 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:37 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:37 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:37 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:37 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:38 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:38 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:38 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:38 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:39 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:39 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:39 +0700] "CONNECT blocklist.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:39 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:44 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:44 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:45 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:46 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:46 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:46 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:46 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:46 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:46 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:46 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:46 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:47 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:48 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:48 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:48 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:48 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:54 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:54 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:56 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:56 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:58 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:58 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:58 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:05:58 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:05:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:00 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:00 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:00 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:01 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:01 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:03 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:03 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:03 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:03 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:03 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:04 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:04 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:04 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:04 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:05 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:06 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:06 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:06 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:06 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:06 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:06 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:08 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:08 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:08 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:08 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:08 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:08 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:08 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:08 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:09 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:11 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:14 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:19 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:20 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:20 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:20 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:20 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:20 +0700] "CONNECT s3.us-west-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:26 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:28 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:28 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:34 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:06:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:06:40 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:06:43 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 1.53.56.127 - admin [30/Apr/2025:06:06:50 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:07:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:08 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:10 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:31 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:31 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:35 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:35 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:35 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:35 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:36 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:36 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:36 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:36 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:36 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:36 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:36 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:38 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:38 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:41 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:41 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:08:42 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:42 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:45 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:46 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:47 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:47 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:47 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:08:48 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:09:00 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:01 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:02 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:03 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:04 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:04 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:05 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:05 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:05 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:08 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:10 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:11 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:11 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:11 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:11 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:12 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:12 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:12 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:13 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:14 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:14 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:14 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:14 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:14 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:14 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:14 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:14 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:14 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:15 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:15 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:15 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:15 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:15 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:15 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:15 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:15 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:15 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:22 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:27 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:28 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:29 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:29 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:30 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:30 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:33 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:35 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:35 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:35 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:35 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:35 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:35 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:35 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:36 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:36 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:36 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:36 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:36 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:37 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:37 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:37 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:37 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:37 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:37 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:38 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:38 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:38 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:39 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:39 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:39 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:41 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:42 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:44 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:44 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:45 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:45 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:46 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:46 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:46 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:47 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:13:48 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:49 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:13:49 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:01 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:01 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:05 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:07 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:14:09 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:14:09 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:09 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:12 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:13 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:20 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:23 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:35 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:36 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:38 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:38 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:38 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:38 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:39 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:39 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:39 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:39 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:43 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:46 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:47 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:49 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:49 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:50 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:50 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:50 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:51 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:52 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:52 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:52 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:53 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:14:54 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:55 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:14:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:04 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:04 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:05 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:06 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:06 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:09 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:10 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:12 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:12 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:12 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:12 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:12 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:12 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:12 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:13 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:13 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:13 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:13 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:13 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:13 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:14 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:14 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:14 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:14 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:14 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:14 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:14 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:15 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:15 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:16 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:19 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:19 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:22 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:23 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:23 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:24 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:24 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:26 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:34 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:15:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:40 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:15:42 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:15:49 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:54 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:54 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:15:59 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:03 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:03 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:03 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:03 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:03 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:03 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:05 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:10 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:13 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:16:13 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:13 +0700] "CONNECT heapanalytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:16:23 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:16:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:17:18 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:17:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:17:46 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:17:47 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:18:05 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:18:05 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:18:07 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:18:17 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:18:19 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:18:33 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:18:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:19:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:19:47 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:06:19:51 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:06:19:55 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:20:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:21:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:21:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:21:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:22:02 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:22:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:23:31 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:23:33 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:23:35 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:00 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:12 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:36 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:36 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:39 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:39 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:39 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:39 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:40 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:40 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:40 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:40 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:42 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:44 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:46 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:47 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:49 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:50 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:51 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:53 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:24:57 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:24:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:04 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:05 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:05 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:05 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:05 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:05 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:05 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:06 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:06 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:07 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:07 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:07 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:07 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:07 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:09 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:10 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:10 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:10 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:10 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:17 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:21 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:23 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:26 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:27 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:27 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:27 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:27 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:27 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:27 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:27 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:30 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:30 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:30 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:32 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:32 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:32 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:32 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:33 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:33 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:33 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:34 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:36 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:25:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:40 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:42 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:25:43 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:25:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:25:48 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:13 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:13 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:22 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:43 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:44 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:47 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:47 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:47 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:47 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:47 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:48 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:48 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:48 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:52 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:52 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:55 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:55 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:56 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:57 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:57 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:58 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:58 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:58 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:59 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:26:59 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:59 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:59 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:59 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:59 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:59 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:59 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:59 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:26:59 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:03 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:07 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:07 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:12 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:13 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:13 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:14 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:14 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:14 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:14 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:14 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:14 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:14 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:14 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:14 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:14 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:15 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:15 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:15 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:16 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:16 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:16 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:18 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:25 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:26 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:26 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:26 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:26 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:26 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:26 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:26 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:26 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:27 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:28 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:28 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:29 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:29 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:29 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:31 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:32 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:32 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:32 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:32 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:32 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:32 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:34 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:34 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:35 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:36 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:36 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:36 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:38 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:38 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:38 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:42 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:43 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:27:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:48 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:27:49 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:27:52 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:27:52 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:20 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:20 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:26 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:32 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:36 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:46 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:49 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:49 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:49 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:50 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:50 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:50 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:50 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:28:51 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:28:59 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:00 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:03 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:03 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:08 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:08 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:14 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:14 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:14 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:14 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:14 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:15 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:15 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:16 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:17 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:17 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:17 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:17 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:17 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:17 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:17 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:17 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:17 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:17 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:19 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:19 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:22 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:22 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:25 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:26 +0700] "CONNECT cdnjs.cloudflare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:28 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:28 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:28 +0700] "CONNECT firebase.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:29 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:30 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:32 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:36 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:42 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:43 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:45 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:46 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:47 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:47 +0700] "CONNECT manager.eu.smartlook.cloud:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:29:48 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:29:51 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:29:54 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:29:54 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:03 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:05 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:05 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:05 +0700] "CONNECT cdn1.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:05 +0700] "CONNECT cdn4.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:05 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:12 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:12 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:12 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:12 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:12 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:32 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:32 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:35 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:36 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:57 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:58 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:58 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:59 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:59 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:30:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:30:59 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:01 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:01 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:01 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:02 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:02 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:03 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:04 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:04 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:04 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:04 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:04 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:05 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:05 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:05 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:06 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:07 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:09 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:09 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:11 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:12 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:14 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:14 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:14 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:14 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:14 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:15 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:15 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:15 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:16 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:16 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:19 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:19 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:19 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:19 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:19 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:20 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:20 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:21 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:21 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:21 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:21 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:22 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:23 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:23 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:23 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:23 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:23 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:23 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:23 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:23 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:24 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:24 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:24 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:24 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:24 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:24 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:24 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:24 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:24 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:24 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:24 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:26 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:36 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:41 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:41 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:41 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:41 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:41 +0700] "CONNECT s3.us-west-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:45 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:46 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:47 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:49 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:49 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:51 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:31:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:53 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:31:57 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:32:00 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:06:32:01 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:32:01 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:32:10 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:32:32 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:32:45 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:32:45 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:32:45 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:32:45 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:32:45 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:32:45 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:32:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:33:34 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:33:35 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:33:47 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:33:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:34:01 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:01 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:04 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:34:04 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:04 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:05 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:05 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:05 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:05 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:05 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:05 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:05 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:06 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:34:07 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:07 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:09 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:34:09 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:34:10 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:11 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:34:12 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:06:34:12 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:06:34:12 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:06:54:26 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:07:12:10 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:07:14:57 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:07:42:22 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:07:42:25 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:07:42:58 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:07:52:04 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:07:54:26 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:07:55:32 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:08:17:45 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:08:17:49 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:08:54:26 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:08:59:55 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:02:51 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:02:55 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:07:16 +0700] "CONNECT testnet.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:11:04 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:12:49 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:12:51 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:12:53 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:12:55 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:12:57 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:13:00 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:13:03 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:13:05 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:13:07 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:13:09 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:13:52 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:16:52 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:18:22 +0700] "CONNECT contracts-api.mintair.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:18:24 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:18:26 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:18:28 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:18:29 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:18:30 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:18:32 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:18:34 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:18:36 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:18:38 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:18:40 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:18:44 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:18:45 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:18:47 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:18:49 +0700] "CONNECT dream-rpc.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:18:51 +0700] "CONNECT contracts-api.mintair.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:19:34 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:20:01 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:20:06 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:20:06 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:20:06 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:20:21 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:20:21 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:21:12 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:21:20 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:21:21 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:22:32 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:23:58 +0700] "CONNECT quest.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:24:51 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.0" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:25:09 +0700] "CONNECT quest.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:25:26 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:25:31 +0700] "CONNECT quest.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:27:18 +0700] "CONNECT quest.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:27:44 +0700] "CONNECT quest.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:28:01 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:28:09 +0700] "CONNECT quest.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:29:33 +0700] "CONNECT quills.fun:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:35:21 +0700] "CONNECT quest.somnia.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:36:17 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:39:11 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:06 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:10 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:10 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:10 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:11 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:11 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:11 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:12 +0700] "CONNECT blocklist.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:16 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:16 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:16 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:16 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:16 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:17 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:18 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:19 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:20 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:20 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:20 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:20 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:20 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:20 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:20 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:20 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:21 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:21 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:24 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:30 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:30 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:30 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:31 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:32 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:33 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:33 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:35 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:36 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:36 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:36 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:36 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:36 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:36 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:36 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:36 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:38 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:38 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:39 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:39 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:39 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:39 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:39 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:40 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:41 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:41 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:41 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:41 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:41 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:41 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:41 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:42 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:42 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:42 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:44 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:46 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:46 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:41:47 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:47 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:48 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:48 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:48 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:48 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:50 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:52 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:52 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:41:54 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:02 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:42:05 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:06 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:08 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:12 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:09:42:15 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:15 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:09:42:22 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:22 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:22 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:22 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:22 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:22 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:22 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:23 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:23 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:26 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:27 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:52 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:56 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:56 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:56 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:57 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:57 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:57 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:42:57 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:42:57 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:01 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:02 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:43:05 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:05 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:06 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:06 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:07 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:07 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:08 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:08 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:08 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:08 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:08 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:08 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:08 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:08 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:08 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:08 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:08 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:09 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:10 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:11 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:11 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:19 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:19 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:21 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:21 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:21 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:21 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:21 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:21 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:24 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:25 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:27 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:27 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:27 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:29 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:29 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:30 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:30 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:30 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:30 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:31 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:31 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:31 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:32 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:32 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:32 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:32 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:32 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:33 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:33 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:33 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:33 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:33 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:33 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:33 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:34 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:34 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:34 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:34 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:34 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:34 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:34 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:34 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:35 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:39 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:39 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:41 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:41 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:43 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:43 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:43 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:48 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:49 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:52 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:43:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:43:58 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:09:44:02 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:09:44:09 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:20 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:20 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:20 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:20 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:20 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:20 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:20 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:20 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:20 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:24 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:28 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:28 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:28 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:28 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:28 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:28 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:28 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:28 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:28 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:29 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:35 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:35 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:44:36 +0700] "CONNECT heapanalytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:43 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:43 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:43 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:44:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:45:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:45:53 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:46:16 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:46:22 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:46:24 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:46:35 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:46:35 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:46:37 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:46:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:47:03 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:47:34 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:47:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:47:53 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:47:53 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:47:54 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:47:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:47:55 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:47:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:47:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:47:55 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:47:56 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:47:56 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:47:56 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:47:56 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:47:57 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:47:57 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:47:57 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:47:58 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:47:58 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:47:59 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:47:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:00 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:00 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:00 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:00 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:01 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:01 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:01 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:02 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:02 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:02 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:02 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:02 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:02 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:02 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:03 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:03 +0700] "CONNECT challenges.cloudflare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:04 +0700] "CONNECT challenges.cloudflare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:04 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:06 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:48:08 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:28 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:43 +0700] "CONNECT mail.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:43 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:43 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:45 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:45 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:45 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:46 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:46 +0700] "CONNECT waa-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:47 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:47 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:47 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:47 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:47 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:47 +0700] "CONNECT addons-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:47 +0700] "CONNECT waa-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:47 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:48 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:48 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:48 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:48 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:48 +0700] "CONNECT appsgrowthpromo-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:48 +0700] "CONNECT appsgrowthpromo-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:48 +0700] "CONNECT addons-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:49 +0700] "CONNECT waa-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:49 +0700] "CONNECT appsgrowthpromo-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:49 +0700] "CONNECT appsgrowthpromo-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:49 +0700] "CONNECT signaler-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:50 +0700] "CONNECT mail-ads.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:50 +0700] "CONNECT peoplestackwebexperiments-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:50 +0700] "CONNECT peoplestack-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:50 +0700] "CONNECT contacts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:50 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:51 +0700] "CONNECT peoplestackwebexperiments-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:51 +0700] "CONNECT mail-ads.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:51 +0700] "CONNECT signaler-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:51 +0700] "CONNECT peoplestack-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:51 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:48:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:54 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:54 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:48:55 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:55 +0700] "CONNECT ci3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:55 +0700] "CONNECT ci3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:48:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:49:10 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:17 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:49:17 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:49:17 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:49:17 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:17 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:49:19 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:20 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:20 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:20 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:20 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:20 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:20 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:20 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:21 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:23 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:49:23 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:49:23 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:49:23 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:49:23 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:49:23 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:49:50 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:49:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:49:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:50:07 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:50:07 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:50:07 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:50:08 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:50:11 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:50:33 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:50:34 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:50:38 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:50:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:50:55 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:50:59 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:51:26 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:51:28 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:09:51:41 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:51:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:52:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:52:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:52:54 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:20 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:21 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:23 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:23 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:23 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:24 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:24 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:24 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:24 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:24 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:24 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:29 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:31 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:32 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:32 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:32 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:32 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:32 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:32 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:32 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:32 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:32 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:33 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT www.okx-doh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:34 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:35 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:35 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:36 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:36 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:36 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:37 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:37 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:37 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:37 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:37 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:37 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:37 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:37 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:37 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:37 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:49 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:49 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:50 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:50 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:50 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:52 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:54 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:57 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:53:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:53:59 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:01 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:01 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:01 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:01 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:01 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:03 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:03 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:03 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:03 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:03 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:04 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:04 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:04 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:04 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:06 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:07 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:07 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:07 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:07 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:07 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:07 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:10 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:10 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:10 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:12 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:12 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:12 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:12 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:13 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:13 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:13 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:17 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:19 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:25 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 1.53.56.127 - admin [30/Apr/2025:09:54:26 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:54:26 +0700] "CONNECT cdn.discordapp.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:27 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:54:29 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:09:54:54 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:54:54 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:55:00 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:55:03 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:55:12 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:55:14 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:55:14 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:55:19 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:55:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:55:20 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:55:53 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:55:53 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:55:53 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:55:53 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:55:56 +0700] "CONNECT bf2055756e.api.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:55:59 +0700] "CONNECT js.onclckvd.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:01 +0700] "CONNECT maucn.netdeliveryservice.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:01 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:05 +0700] "CONNECT kts.sensitiveclick.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:08 +0700] "CONNECT r.visitstats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:56:10 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:10 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:10 +0700] "CONNECT kts.bartcons.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:11 +0700] "CONNECT js.canstrm.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:11 +0700] "CONNECT gfxdn.pics:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:11 +0700] "CONNECT gfxdn.pics:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:11 +0700] "CONNECT mauc.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:56:11 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:11 +0700] "CONNECT tcimp.zog.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:11 +0700] "CONNECT whoisezh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:11 +0700] "CONNECT mauc.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:56:11 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:11 +0700] "CONNECT whoisezh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:13 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:56:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:56:34 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:56:35 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:56:58 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:57:04 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:57:04 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:57:06 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:57:07 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:57:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:58:04 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:58:06 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:58:06 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:58:06 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:58:08 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:58:08 +0700] "CONNECT bf2055756e.api.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:58:10 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:58:13 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:58:13 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:58:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:58:25 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:58:26 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:58:28 +0700] "CONNECT d2ly5wctnygv5n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:58:30 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:58:33 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:09:58:45 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:58:59 +0700] "CONNECT maucn.netdeliveryservice.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:58:59 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:59:03 +0700] "CONNECT kts.sensitiveclick.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:59:05 +0700] "CONNECT r.visitstats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:59:07 +0700] "CONNECT gfxdn.pics:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:59:07 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:59:07 +0700] "CONNECT gfxdn.pics:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:59:07 +0700] "CONNECT mauc.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:59:07 +0700] "CONNECT kts.bartcons.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:59:07 +0700] "CONNECT tcimp.zog.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:59:07 +0700] "CONNECT whoisezh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:59:07 +0700] "CONNECT mauc.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:09:59:08 +0700] "CONNECT whoisezh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:09:59:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:00:03 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:00:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:00:45 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:00:47 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:00:50 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:01:02 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:01:04 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:01:04 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:01:04 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:01:08 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:01:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:01:22 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:01:22 +0700] "CONNECT tonyield.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:01:28 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:01:28 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:01:29 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:01:29 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:01:29 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:01:39 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:01:40 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:01:40 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:01:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:02:00 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:02:00 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:02:01 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:02:01 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:02:01 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:02:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:02:02 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:02:03 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:02:13 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:02:15 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:02:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:02:33 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:02:33 +0700] "CONNECT bf2055756e.api.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:02:35 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:03:13 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:13 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:03:13 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:03:14 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:14 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:14 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:14 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:14 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:14 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:18 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:20 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:03:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:03:24 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:26 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:26 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:32 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:03:34 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:03:34 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:03:58 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:00 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:01 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:01 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:02 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:03 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:06 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:11 +0700] "CONNECT js.onclckvd.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:13 +0700] "CONNECT maucn.netdeliveryservice.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:13 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:16 +0700] "CONNECT kts.sensitiveclick.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:18 +0700] "CONNECT r.visitstats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:20 +0700] "CONNECT gfxdn.pics:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:20 +0700] "CONNECT kts.bartcons.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:22 +0700] "CONNECT mauc.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:22 +0700] "CONNECT tcimp.zog.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:22 +0700] "CONNECT whoisezh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:23 +0700] "CONNECT mauc.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:23 +0700] "CONNECT whoisezh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:04:37 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:49 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:53 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:53 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:04:53 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:53 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:04:54 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:00 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:01 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:03 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:10 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:10 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:16 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:16 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:18 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:19 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:19 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:19 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:19 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:21 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:21 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:22 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:24 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:25 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:28 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:30 +0700] "CONNECT cdnjs.cloudflare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:31 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:32 +0700] "CONNECT firebase.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:32 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:33 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:33 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:36 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:36 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:36 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:36 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:36 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:36 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:41 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:41 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:41 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:41 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:41 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:41 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:41 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:41 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:41 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:41 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:42 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:42 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:42 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:42 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:43 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:45 +0700] "CONNECT manager.eu.smartlook.cloud:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:47 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:49 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:55 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:05:55 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:05:56 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:05:58 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:05:58 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:06:05 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:05 +0700] "CONNECT cdn4.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:05 +0700] "CONNECT cdn4.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:05 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:05 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:13 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:13 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:13 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:06:16 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:37 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:37 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:06:54 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:54 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:06:54 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:03 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:03 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:06 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:16 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:18 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:07:20 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:24 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:24 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:24 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:24 +0700] "CONNECT www.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:25 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT aax-us-iad.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT aax-us-iad.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:29 +0700] "CONNECT aax-us-iad.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:30 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:30 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:30 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:31 +0700] "CONNECT www.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:31 +0700] "CONNECT www.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:31 +0700] "CONNECT www.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:31 +0700] "CONNECT www.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:31 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:31 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:31 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:31 +0700] "CONNECT completion.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:31 +0700] "CONNECT pagead2.googlesyndication.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:31 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:32 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:32 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:32 +0700] "CONNECT unagi-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:32 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:32 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:32 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:32 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:32 +0700] "CONNECT unagi-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:34 +0700] "CONNECT c.amazon-adsystem.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:34 +0700] "CONNECT unagi-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:34 +0700] "CONNECT s.amazon-adsystem.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:34 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:35 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:36 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:36 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:36 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:36 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:36 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:36 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:07:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:50 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:50 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:50 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:50 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:50 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:50 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:53 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:07:58 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:02 +0700] "CONNECT bat.bing.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:02 +0700] "CONNECT www.ubereats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:02 +0700] "CONNECT tags.tiqcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:02 +0700] "CONNECT d3i4yxtzktqr9n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT bat.bing.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT d3i4yxtzktqr9n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT tb-static.uber.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT d3i4yxtzktqr9n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT d3i4yxtzktqr9n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT csp.uber.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT b92.yahoo.co.jp:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT s.yimg.jp:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:04 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:07 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:08 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:08 +0700] "CONNECT c.amazon-adsystem.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:08 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:08 +0700] "CONNECT ct.pinterest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:08 +0700] "CONNECT js.adsrvr.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:08 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:08 +0700] "CONNECT ct.pinterest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:08 +0700] "CONNECT bat.bing.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:08 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:08 +0700] "CONNECT s.yimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT dx.mountain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:09 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT s.amazon-adsystem.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT s.yimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.ubereats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT s.yimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:10 +0700] "CONNECT www.ubereats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:11 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:11 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:11 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:11 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:11 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:11 +0700] "CONNECT tr6.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:11 +0700] "CONNECT sp.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:11 +0700] "CONNECT sp.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:11 +0700] "CONNECT sp.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:11 +0700] "CONNECT 44.228.85.26:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:12 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:12 +0700] "CONNECT tr6.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:12 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:12 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:12 +0700] "CONNECT www.ubereats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:13 +0700] "CONNECT px.mountain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:14 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:15 +0700] "CONNECT insight.adsrvr.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:15 +0700] "CONNECT c.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:16 +0700] "CONNECT insight.adsrvr.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:17 +0700] "CONNECT bat.bing.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:19 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:19 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:19 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:19 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:19 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:29 +0700] "CONNECT alpha.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:29 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:29 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:30 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:41 +0700] "CONNECT alpha.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:50 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:50 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:08:51 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:51 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:08:54 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:03 +0700] "CONNECT alpha.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:03 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:04 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:04 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:14 +0700] "CONNECT alpha.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:15 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:35 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:35 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:48 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:51 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:52 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:52 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:52 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:52 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:53 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:53 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:53 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:53 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:54 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:57 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:58 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:59 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:59 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:59 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:59 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:59 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:59 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:59 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:09:59 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:59 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:09:59 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:00 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:01 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:02 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:02 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:04 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:10 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:10 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:11 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:11 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:12 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:12 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:12 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:12 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:12 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:14 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:14 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:14 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:14 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:14 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:15 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:15 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:15 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:15 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:16 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:17 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:17 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:17 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:17 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:17 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:17 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:17 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:18 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:18 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:18 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:18 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:18 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:18 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:18 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:18 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:18 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:18 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:27 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:31 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:31 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:31 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:31 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:31 +0700] "CONNECT s3.us-west-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:41 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:10:43 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:43 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:48 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:10:49 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/kqsmfnrgrjfiz2gmgi2y5iaodi_505/lmelglejhemejginpboagddgdfbepgmp_505_all_ZZ_adobzubwraruocouem4xajxoywda.crx3 HTTP/1.1" 200 64514 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:10:54 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:10:56 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:11:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:11:14 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:11:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:12:21 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:12:24 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:12:30 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:12:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:13:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:20 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:20 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:24 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:14:24 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:24 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:25 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:25 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:25 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:25 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:25 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:25 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:25 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:26 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:14:27 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:27 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:27 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:30 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:14:30 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:14:33 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:14:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:21 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:23 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:25 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:25 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:25 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:25 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:25 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:25 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:26 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:26 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:26 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:31 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:31 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:32 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:32 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:32 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:32 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:32 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:32 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:32 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:32 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:32 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:32 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:32 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:33 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:33 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:33 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:33 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:33 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:33 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:33 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:33 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:36 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:36 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:36 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:37 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:37 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:37 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:37 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:38 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:39 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:39 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:39 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:39 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:39 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:40 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:40 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:41 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:41 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:41 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:41 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:41 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:41 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:41 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:42 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:42 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:44 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:44 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:44 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:46 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:47 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:50 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:52 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:54 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:55 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:55 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:55 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:16:59 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:59 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:59 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:16:59 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:00 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:00 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:00 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:00 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:00 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:00 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:01 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:01 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:01 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:01 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:01 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:01 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:01 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:02 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:02 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:02 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:02 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:03 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:03 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:03 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:03 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:04 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:04 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:04 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:04 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:04 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:04 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:04 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:06 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:07 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:08 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:09 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:09 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:10 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:11 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:11 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:11 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:11 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:11 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:11 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:11 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:11 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:11 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:11 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:12 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:15 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:21 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:21 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:25 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:27 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:27 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:17:28 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:28 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:30 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:30 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/kqsmfnrgrjfiz2gmgi2y5iaodi_505/lmelglejhemejginpboagddgdfbepgmp_505_all_ZZ_adobzubwraruocouem4xajxoywda.crx3 HTTP/1.1" 200 64553 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:17:32 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:17:41 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:41 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:41 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:41 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:41 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:41 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:41 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:41 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:41 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:41 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:43 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:45 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:17:46 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:17:59 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:18:09 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:12 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:13 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:14 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:15 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:15 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:15 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:16 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:16 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:16 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:17 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:17 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:21 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:21 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:25 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:26 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:26 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:26 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:26 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:27 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:27 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:27 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:27 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:27 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:27 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:28 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:28 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:28 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:28 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:28 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:28 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:29 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:29 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:29 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:29 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:29 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:29 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:29 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:29 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:29 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:30 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:31 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:31 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:33 +0700] "CONNECT www.okx-doh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:39 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:40 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:40 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:40 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:40 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:40 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:41 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:42 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:43 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:44 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:45 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:45 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:46 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:48 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:48 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:49 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:49 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:49 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:49 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:50 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:50 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:50 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:50 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:50 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:50 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:50 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:51 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:51 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:51 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:51 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:51 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:52 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:52 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:52 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:52 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:52 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:53 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:53 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:53 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:53 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:53 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:53 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:53 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:53 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:53 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:53 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:53 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:54 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:54 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:54 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:56 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:57 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:57 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:18:58 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:19:00 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:01 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:19:02 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:19:02 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:19:02 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:19:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:19:11 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:19:11 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:19:16 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:17 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:19:21 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:19:33 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:33 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:33 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:39 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:19:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:50 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:50 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:50 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:19:52 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:19:53 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:20:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:20:56 +0700] "CONNECT heapanalytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:21:06 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:21:08 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:21:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:21:32 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:21:32 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:21:33 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:21:38 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:21:40 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:21:59 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:22:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:22:25 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:23:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:23:27 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:24:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:25:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:25:22 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:25:41 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:26:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:26:39 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:26:42 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:26:54 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:27:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:27:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:27:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:27:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:27:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:27:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:27:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:27:45 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:10 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:12 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:13 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:13 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:14 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:14 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:14 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:14 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:14 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:15 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:15 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:18 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:18 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:20 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:21 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:23 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:24 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:24 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:25 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:26 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:29 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:32 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:32 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:38 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:39 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:39 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:39 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:39 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:39 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:39 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:40 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:40 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:40 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:40 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:49 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:50 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:50 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:50 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:50 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:51 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:52 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:52 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:52 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:52 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:52 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:54 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:54 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:54 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:28:54 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:55 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:56 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:58 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:59 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:28:59 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:29:00 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:29:00 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:29:01 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:29:01 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:29:01 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:29:01 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:29:02 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:29:02 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:29:03 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:29:09 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:29:10 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:29:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:29:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:29:15 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:29:18 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:29:19 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:29:42 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:29:42 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:29:48 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:29:59 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:30:02 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:30:02 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:30:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:31:01 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:31:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:31:45 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:32:01 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:32:03 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:32:03 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:32:11 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:32:11 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:32:11 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:32:14 +0700] "CONNECT bf2055756e.api.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:32:17 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:33:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:33:21 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:30 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:31 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:31 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:31 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:31 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:31 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:31 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:31 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:34 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:34 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:34 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:34 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:34 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:34 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:34 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:37 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:39 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:39 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:39 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:40 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:42 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:54 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:34:54 +0700] "CONNECT tonyield.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:59 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:59 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:34:59 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:00 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:35:06 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:09 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:09 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:11 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:35:11 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:35:16 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:18 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:19 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:19 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:20 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:21 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:21 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:21 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:21 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:22 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:22 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:23 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:24 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:24 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:24 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:25 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:25 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:25 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:25 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:25 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:26 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:27 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:27 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:27 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:27 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:27 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:27 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:27 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:27 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:30 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:35:30 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:30 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:35:32 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:33 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:38 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:38 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:35:38 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:35:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:35:39 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:35:40 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:01 +0700] "CONNECT js.onclckvd.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:03 +0700] "CONNECT maucn.netdeliveryservice.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:03 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:06 +0700] "CONNECT kts.sensitiveclick.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:07 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:10 +0700] "CONNECT r.visitstats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:12 +0700] "CONNECT gfxdn.pics:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:12 +0700] "CONNECT kts.bartcons.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:36:12 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:36:12 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:36:12 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:14 +0700] "CONNECT mauc.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:14 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:14 +0700] "CONNECT whoisezh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:14 +0700] "CONNECT tcimp.zog.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:14 +0700] "CONNECT mauc.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:14 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:14 +0700] "CONNECT whoisezh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:36:20 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:23 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:36:23 +0700] "CONNECT proxsee.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:36:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:36:25 +0700] "CONNECT proxsee.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:26 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:28 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:36:29 +0700] "CONNECT prod-fastly-us-west-2.video.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:36:29 +0700] "CONNECT prod-fastly-us-west-2.video.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:29 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:29 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:29 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:36:30 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:30 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:30 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:30 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:30 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:30 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:30 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:30 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:38 +0700] "CONNECT bf2055756e.api.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:42 +0700] "CONNECT maucn.netdeliveryservice.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:36:57 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:36:58 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:36:58 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:36:59 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:37:00 +0700] "CONNECT prod-fastly-us-west-2.video.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:37:00 +0700] "CONNECT prod-fastly-us-west-2.video.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:37:02 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:37:03 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:37:04 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:37:06 +0700] "CONNECT proxsee.pscp.tv:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:37:07 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:37:07 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:37:07 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:37:07 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:37:09 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:37:10 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:37:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:37:12 +0700] "CONNECT d2ly5wctnygv5n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:37:13 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:37:13 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:37:13 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:37:22 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:37:23 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:37:23 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:10:37:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:37:59 +0700] "CONNECT maucn.netdeliveryservice.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:37:59 +0700] "CONNECT vast.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:38:02 +0700] "CONNECT kts.sensitiveclick.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:38:05 +0700] "CONNECT r.visitstats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:38:06 +0700] "CONNECT gfxdn.pics:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:38:07 +0700] "CONNECT kts.bartcons.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:38:08 +0700] "CONNECT mauc.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:38:09 +0700] "CONNECT whoisezh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:38:09 +0700] "CONNECT tcimp.zog.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:38:09 +0700] "CONNECT mauc.yomeno.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:38:09 +0700] "CONNECT whoisezh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:38:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:38:17 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:38:20 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:38:20 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:38:22 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:38:30 +0700] "CONNECT bf2055756e.api.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:38:33 +0700] "CONNECT maucn.netdeliveryservice.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:38:59 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:39:01 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:39:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:39:45 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:39 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:43 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:43 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:43 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:44 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:44 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:44 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:44 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:44 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:44 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:50 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:50 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:50 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:52 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:53 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:53 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:53 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:53 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:53 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:53 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:53 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:53 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:53 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:40:55 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:40:56 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:03 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:03 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:03 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:03 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:03 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:04 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:04 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:04 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:04 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:04 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:05 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:05 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:05 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:05 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:05 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:05 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:05 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:05 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:06 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:07 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:08 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:10 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:11 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:11 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:13 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:14 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:15 +0700] "CONNECT cdnjs.cloudflare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:17 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:17 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:17 +0700] "CONNECT firebase.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:18 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:19 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:20 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:20 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:20 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:20 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:20 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:20 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:21 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:23 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:23 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:26 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:26 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:26 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:26 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:26 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:27 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:28 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:28 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:28 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:30 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:30 +0700] "CONNECT manager.eu.smartlook.cloud:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:31 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:37 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:39 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:45 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:41:46 +0700] "CONNECT cdn4.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:47 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:47 +0700] "CONNECT cdn4.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:47 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:47 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:48 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:41:54 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:54 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:41:54 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:41:54 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:42:08 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:42:08 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:42:10 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:42:34 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:42:37 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:42:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:42:41 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:42:44 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:42:44 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:01 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:01 +0700] "CONNECT www.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:01 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:02 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:06 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:06 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:06 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:06 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:06 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:06 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:06 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:06 +0700] "CONNECT aes.us-east.ono.axp.amazon-adsystem.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT aax-us-iad.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT aax-us-iad.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:07 +0700] "CONNECT images-na.ssl-images-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:08 +0700] "CONNECT www.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:08 +0700] "CONNECT www.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:08 +0700] "CONNECT www.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:08 +0700] "CONNECT www.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:08 +0700] "CONNECT unagi-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:09 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:09 +0700] "CONNECT completion.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:09 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:09 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:09 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:09 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:09 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:09 +0700] "CONNECT fls-na.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT m.media-amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT aax-us-iad.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT aax-us-iad.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT c.amazon-adsystem.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:13 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:14 +0700] "CONNECT s.amazon-adsystem.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:14 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:14 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:14 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:15 +0700] "CONNECT unagi.amazon.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:17 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:17 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:17 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:17 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:28 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:31 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:31 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:31 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:31 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:31 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:31 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:33 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:43 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:43 +0700] "CONNECT bat.bing.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:43 +0700] "CONNECT www.ubereats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:43 +0700] "CONNECT tags.tiqcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:43 +0700] "CONNECT d3i4yxtzktqr9n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT bat.bing.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT tags.tiqcdn.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT tb-static.uber.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT www.google-analytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT d3i4yxtzktqr9n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT csp.uber.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT b92.yahoo.co.jp:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT d3i4yxtzktqr9n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT d3i4yxtzktqr9n.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT s.yimg.jp:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:45 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:49 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:49 +0700] "CONNECT c.amazon-adsystem.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:49 +0700] "CONNECT ct.pinterest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:49 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT js.adsrvr.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT bat.bing.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT ct.pinterest.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT s.yimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT dx.mountain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT googleads.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:50 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT www.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT s.amazon-adsystem.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT www.ubereats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:51 +0700] "CONNECT tr6.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:52 +0700] "CONNECT www.ubereats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:52 +0700] "CONNECT s.yimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:52 +0700] "CONNECT s.yimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:52 +0700] "CONNECT 100.20.58.101:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:53 +0700] "CONNECT b.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:53 +0700] "CONNECT sp.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:53 +0700] "CONNECT sp.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:53 +0700] "CONNECT sp.analytics.yahoo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:54 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:54 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:54 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:54 +0700] "CONNECT www.ubereats.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:54 +0700] "CONNECT px.mountain.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:55 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:56 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:56 +0700] "CONNECT insight.adsrvr.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:56 +0700] "CONNECT c.clarity.ms:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:56 +0700] "CONNECT insight.adsrvr.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:56 +0700] "CONNECT bat.bing.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:56 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:56 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:56 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:56 +0700] "CONNECT insight.adsrvr.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:58 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:43:59 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:59 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:59 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:43:59 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:44:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:44:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:44:09 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:44:09 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:44:10 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:44:10 +0700] "CONNECT alpha.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:44:10 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:44:10 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:44:12 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:44:22 +0700] "CONNECT alpha.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:44:23 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:44:32 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:44:39 +0700] "CONNECT alpha.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:44:39 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:44:40 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:44:40 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:44:51 +0700] "CONNECT alpha.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:10 +0700] "CONNECT alpha.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:12 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:21 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:22 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:25 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:25 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:37 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:47 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:50 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:51 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:51 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:51 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:51 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:52 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:52 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:52 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:52 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:53 +0700] "CONNECT blocklist.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:56 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:57 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:57 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:57 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:57 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:58 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:58 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:58 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:58 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:45:59 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:00 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:02 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:02 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:03 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:03 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:03 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:03 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:03 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:09 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:10 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:10 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:11 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:11 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:13 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:13 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:13 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:13 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:14 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:14 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:14 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:14 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:14 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:14 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:14 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:14 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:14 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:14 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:14 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:15 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:16 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:17 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:17 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:17 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:17 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:17 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:17 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:17 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:17 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:18 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:22 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:30 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:32 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:32 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:32 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:32 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:32 +0700] "CONNECT s3.us-west-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:46:43 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:45 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:45 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:47 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:46:53 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:46:55 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 878999 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:10:47:15 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:47:17 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:47:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:48:38 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:48:44 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:48:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:48:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:48:51 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:49:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:10 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:14 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:14 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:14 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:15 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:16 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:50:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:18 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:18 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:20 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:10:50:20 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:50:22 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:50:22 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:50:25 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:50:26 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:50:26 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:50:26 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:10:50:26 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:10:54:26 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:45 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:45 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:47 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:49 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:49 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:49 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:49 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:50 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:50 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:50 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:51 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:51 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:51 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:51 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:52 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:52 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:52 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:52 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:53 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:53 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:54 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:54 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:54 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:54 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:54 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:54 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:54 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:55 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:55 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:56 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:04:57 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:04:57 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:05:47 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:05:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:06:04 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:06:09 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:06:51 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:06:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:07:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:08:49 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:08:50 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:08:50 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:08:50 +0700] "CONNECT challenges.cloudflare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:08:52 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:08:53 +0700] "CONNECT api.segment.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:28 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:28 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:30 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:31 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:31 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:31 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:31 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:32 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:32 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:32 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:33 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:34 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:34 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:35 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:35 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:35 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:35 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:35 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:36 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:37 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:37 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:37 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:37 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:37 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:37 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:17:38 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:38 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:39 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:40 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:17:40 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:18:30 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:18:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:19:08 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:19:24 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:19:25 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:19:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:20:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:21:32 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:21:32 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:21:32 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:21:34 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:32:25 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:11:35:49 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:35:53 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:11:54:26 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:23:21 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:30 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:31 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:32 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:32 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:32 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:34 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:34 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:34 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:34 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:35 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:35 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:35 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:35 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:35 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:37 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:38 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:43 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:44 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:45 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:45 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:45 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:45 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:45 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:45 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:45 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:45 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:45 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:45 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:46 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:46 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:47 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:48 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:48 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:48 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:48 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:48 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:48 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:48 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:49 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:49 +0700] "CONNECT www.okx-doh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:50 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:51 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:56 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:56 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:26:56 +0700] "CONNECT tgdapp.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:26:58 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:00 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:00 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:01 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:01 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:02 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:02 +0700] "CONNECT common-service.mobus.workers.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:02 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:02 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:04 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:04 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:04 +0700] "CONNECT tgdapp.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:08 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:08 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:09 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:09 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:10 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:10 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:10 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:10 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:11 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:22 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:22 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:22 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:37 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:37 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:38 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:39 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:39 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:39 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:39 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:39 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:40 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:40 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:40 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:41 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:41 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:42 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:42 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:42 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:44 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:48 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:49 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:49 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:49 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:49 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:49 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:49 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:50 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:50 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:51 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:53 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:55 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:56 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:56 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:56 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:56 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:56 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:56 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:56 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:56 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:27:56 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:27:56 +0700] "CONNECT www.okx-doh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:01 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:01 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:01 +0700] "CONNECT tgdapp.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:01 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:02 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:02 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:02 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:02 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:02 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:02 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:03 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:05 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:05 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:05 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:06 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:06 +0700] "CONNECT common-service.mobus.workers.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:06 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:07 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:07 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:07 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:07 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:07 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:08 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:08 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:08 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:08 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:08 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT tgdapp.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:09 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:13 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:15 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:15 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:15 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:15 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:15 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:15 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:16 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:16 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:16 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:16 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:16 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:17 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:33 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:33 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:34 +0700] "CONNECT common-service.mobus.workers.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:36 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:40 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:41 +0700] "CONNECT www.googleadservices.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:41 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:41 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:41 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:41 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:41 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:42 +0700] "CONNECT id.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:42 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:44 +0700] "CONNECT encrypted-tbn0.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:44 +0700] "CONNECT encrypted-tbn0.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:44 +0700] "CONNECT encrypted-tbn0.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:45 +0700] "CONNECT common-service.mobus.workers.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:45 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:45 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:45 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:45 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:45 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:28:46 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:46 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:46 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:47 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:47 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:28:48 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:28:51 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:28:51 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:06 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:06 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:08 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:08 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:08 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:08 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:08 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:08 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:10 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:10 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:12 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:12 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:12 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:12 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:12 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:12 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:14 +0700] "CONNECT tgdapp.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:14 +0700] "CONNECT tgdapp.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:15 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:18 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:35 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:42 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:42 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:42 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:43 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:43 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:43 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:44 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:45 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:46 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:47 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:50 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:50 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:50 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:29:56 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:29:57 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:30:14 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:30:26 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:30:26 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:30:26 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:30:26 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:07 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:10 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:15 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:21 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:25 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:29 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:29 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:29 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:29 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:31 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:33 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:31:34 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:31:34 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:31:34 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:36 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:36 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:36 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:31:39 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:31:45 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:31:45 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:31:45 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:45 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:49 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:31:53 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:32:04 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:32:04 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:32:16 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:32:44 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:32:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:32:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:32:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:32:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:32:48 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:32:48 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:32:58 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:32:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:32:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:32:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:32:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:01 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:01 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:02 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:02 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:03 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:03 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:03 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:04 +0700] "CONNECT api.rudderstack.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:04 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:05 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:05 +0700] "CONNECT api1-pp.klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:05 +0700] "CONNECT js-agent.newrelic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:06 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:06 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:06 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:06 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:06 +0700] "CONNECT cdn.rudderlabs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:06 +0700] "CONNECT api1-pp.klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:06 +0700] "CONNECT relay.walletconnect.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:06 +0700] "CONNECT blocklist.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:07 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:09 +0700] "CONNECT w4wch3bro2.execute-api.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:09 +0700] "CONNECT w4wch3bro2.execute-api.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:09 +0700] "CONNECT verify.walletconnect.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:10 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:19 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:23 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:23 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:23 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:24 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:26 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:26 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:26 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:26 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:26 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:26 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:27 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:28 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:28 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:28 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:29 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:29 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:33:57 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:33:58 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:08 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:34:16 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:34:20 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:20 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:20 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:20 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:31 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:31 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:35 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:35 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:36 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:36 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:36 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:37 +0700] "CONNECT blocklist.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:37 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:37 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:37 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:39 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:39 +0700] "CONNECT api.rudderstack.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:39 +0700] "CONNECT js-agent.newrelic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:40 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:40 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:40 +0700] "CONNECT api1-pp.klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:40 +0700] "CONNECT relay.walletconnect.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:41 +0700] "CONNECT cdn.rudderlabs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:41 +0700] "CONNECT verify.walletconnect.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:41 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:41 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:42 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:42 +0700] "CONNECT w4wch3bro2.execute-api.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:42 +0700] "CONNECT w4wch3bro2.execute-api.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:43 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:44 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:44 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:44 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:44 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:45 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:45 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:45 +0700] "CONNECT api1-pp.klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:34:47 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:47 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:47 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:53 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:58 +0700] "CONNECT swap.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:58 +0700] "CONNECT client-config.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:34:59 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:35:01 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:04 +0700] "CONNECT accounts.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:04 +0700] "CONNECT price.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:04 +0700] "CONNECT token.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:04 +0700] "CONNECT price.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:04 +0700] "CONNECT on-ramp-content.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:05 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:05 +0700] "CONNECT linea-mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:05 +0700] "CONNECT authentication.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:07 +0700] "CONNECT oidc.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:08 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:09 +0700] "CONNECT user-storage.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:28 +0700] "CONNECT gas.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:31 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:35:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:35:33 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:34 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:35:34 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:35:34 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:34 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:35 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:37 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:35:40 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:35:46 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:35:55 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:36:05 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:36:05 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:36:05 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:36:05 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:36:05 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:36:05 +0700] "CONNECT cdn.rudderlabs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:36:05 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:36:05 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:36:05 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:36:05 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:36:07 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:36:07 +0700] "CONNECT api.rudderstack.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:36:07 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:36:07 +0700] "CONNECT relay.walletconnect.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:36:08 +0700] "CONNECT cdn.rudderlabs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:36:10 +0700] "CONNECT accounts.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:36:13 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:36:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:36:37 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:36:51 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:36:57 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:37:31 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:37:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:37:43 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:37:53 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:37:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:37:53 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:37:53 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:37:54 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:37:54 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:37:54 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:37:56 +0700] "CONNECT relay.walletconnect.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:09 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:11 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:12 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:12 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:12 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:12 +0700] "CONNECT t.ackinacki.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:14 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:15 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:15 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:16 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:17 +0700] "CONNECT app-backend.ackinacki.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:18 +0700] "CONNECT t.ackinacki.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:18 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:21 +0700] "CONNECT api-js.mixpanel.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:21 +0700] "CONNECT api-js.mixpanel.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:38 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:40 +0700] "CONNECT popits-issued.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:40 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:40 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:40 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:40 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:40 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:40 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:43 +0700] "CONNECT t.ackinacki.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:44 +0700] "CONNECT t.ackinacki.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:44 +0700] "CONNECT app-backend.ackinacki.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:44 +0700] "CONNECT app-backend.ackinacki.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:44 +0700] "CONNECT app-backend.ackinacki.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:38:45 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:38:53 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:39:08 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:39:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:39:14 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:39:17 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:39:28 +0700] "CONNECT api-js.mixpanel.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:39:40 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:39:55 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:07 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:07 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:07 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:07 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:07 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:09 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:11 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:11 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:11 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:12 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:12 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:12 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:12 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:12 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:21 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:22 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:22 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:23 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:27 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:28 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:28 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:28 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:28 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:28 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:29 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:29 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:30 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:30 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:30 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:30 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:30 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:30 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:30 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:30 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:31 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:31 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:32 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:33 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:33 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:36 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:36 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:36 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:41 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:41 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:42 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:44 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:44 +0700] "CONNECT cdn.lottielab.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:44 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:44 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:44 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:44 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:44 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:44 +0700] "CONNECT cdn.lottielab.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:44 +0700] "CONNECT cdn.lottielab.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:44 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:46 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:40:48 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:52 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:54 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:40:54 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:02 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:07 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:07 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:13 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:13 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:41:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:16 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:16 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:41:17 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:17 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:17 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:17 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:18 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:18 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:18 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:18 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:18 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:18 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:22 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:22 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:22 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:23 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:23 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:23 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:24 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:24 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:24 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:24 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:25 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:27 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:27 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:27 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:28 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:28 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:29 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:30 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:30 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:31 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:31 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:31 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:31 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:31 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:31 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:31 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:31 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:32 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:34 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:34 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:35 +0700] "CONNECT tgdapp.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:35 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:36 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:36 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:36 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:36 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:36 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:36 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:36 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:36 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:40 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:40 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:40 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT common-service.mobus.workers.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:42 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:43 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:43 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:44 +0700] "CONNECT tgdapp.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:41:47 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:50 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:53 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:53 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:53 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:53 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:41:56 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:06 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:06 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:11 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:12 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:12 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:13 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:14 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:14 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:14 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:14 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:14 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:14 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:16 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:18 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:18 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:18 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:18 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:18 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:19 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:19 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:20 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:21 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:42:22 +0700] "CONNECT tgdapp.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:22 +0700] "CONNECT tgdapp.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:22 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:22 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:22 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:22 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:23 +0700] "CONNECT common-service.mobus.workers.dev:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:23 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:42:29 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:29 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:29 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:30 +0700] "CONNECT bbc.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:34 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:34 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:34 +0700] "CONNECT www.googleadservices.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:34 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:34 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:35 +0700] "CONNECT id.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:35 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:36 +0700] "CONNECT encrypted-tbn0.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:42:37 +0700] "CONNECT waa-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:37 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:38 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:42:44 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:43:09 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:43:14 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:43:14 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:43:14 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:43:14 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:43:15 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:43:15 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:43:15 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:43:17 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:43:17 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:43:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:43:18 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:43:19 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:43:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:43:26 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:43:26 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:43:26 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:43:26 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:43:26 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:43:28 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:10 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:15 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:19 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:26 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:30 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:34 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:36 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:44:36 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:44:36 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:44:36 +0700] "CONNECT static.duckchain.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:44:39 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:44:40 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:44:40 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:44:40 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:40 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:44:41 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:42 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:44 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:44:44 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:47 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:44:47 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:44:47 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:47 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:53 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:44:57 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:45:03 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:45:03 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:08 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:08 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:10 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:11 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:11 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:11 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:11 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:12 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:12 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:12 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:13 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:13 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:14 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:15 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:15 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:16 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:16 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:16 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:16 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:17 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:17 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:17 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:17 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:17 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:17 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:17 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:18 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:45:19 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:20 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:45:31 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:43 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:45:49 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:45:49 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:45:49 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:45:50 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:45:51 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:45:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:45:52 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:45:54 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:45:55 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:45:57 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:46:10 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:14 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:14 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:46:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:15 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:18 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:18 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:18 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:18 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:18 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:19 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:19 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:25 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:25 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:26 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:26 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:26 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:30 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:30 +0700] "CONNECT api.rudderstack.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:30 +0700] "CONNECT js-agent.newrelic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:30 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:31 +0700] "CONNECT stats.g.doubleclick.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:31 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:31 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:31 +0700] "CONNECT api1-pp.klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:31 +0700] "CONNECT relay.walletconnect.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:32 +0700] "CONNECT cdn.rudderlabs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:32 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:33 +0700] "CONNECT w4wch3bro2.execute-api.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:33 +0700] "CONNECT verify.walletconnect.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:33 +0700] "CONNECT w4wch3bro2.execute-api.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:33 +0700] "CONNECT w4wch3bro2.execute-api.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:37 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:37 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:37 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT verify.walletconnect.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:38 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:40 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:40 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:41 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:41 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:41 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:41 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:41 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:42 +0700] "CONNECT api1-pp.klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:42 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:42 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:42 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:42 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:43 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:44 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:46:44 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:46:44 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:46:44 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:44 +0700] "CONNECT w4wch3bro2.execute-api.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:44 +0700] "CONNECT relay.walletconnect.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:46:52 +0700] "CONNECT swap.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:52 +0700] "CONNECT client-config.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:46:53 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:00 +0700] "CONNECT accounts.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:01 +0700] "CONNECT price.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:01 +0700] "CONNECT token.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:01 +0700] "CONNECT price.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:01 +0700] "CONNECT on-ramp-content.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:01 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:01 +0700] "CONNECT linea-mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:02 +0700] "CONNECT authentication.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:04 +0700] "CONNECT oidc.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:06 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:07 +0700] "CONNECT user-storage.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:14 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:14 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:47:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:20 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:47:22 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:47:29 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:30 +0700] "CONNECT price.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT accounts.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT price.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT min-api.cryptocompare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT gas.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT linea-mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:31 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:33 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:34 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:34 +0700] "CONNECT api1-pp.klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:36 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:37 +0700] "CONNECT w4wch3bro2.execute-api.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:38 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:39 +0700] "CONNECT analytics.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:39 +0700] "CONNECT www.google.com.vn:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:47:49 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:47:54 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:03 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:04 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:07 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:07 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:07 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:07 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:48:07 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:07 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:07 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:48:08 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:08 +0700] "CONNECT api.rudderstack.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:48:09 +0700] "CONNECT relay.walletconnect.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:10 +0700] "CONNECT cdn.rudderlabs.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:12 +0700] "CONNECT klokapp.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:48:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:39 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:49 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:48:59 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:49:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:49:51 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:49:56 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:49:56 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:49:56 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:49:56 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:49:56 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:49:56 +0700] "CONNECT bam.nr-data.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:49:56 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:49:58 +0700] "CONNECT relay.walletconnect.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:08 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:10 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:11 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:11 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:11 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:11 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:11 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:11 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:11 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:11 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:11 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:12 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:12 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:15 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:16 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:17 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:17 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:17 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:18 +0700] "CONNECT t.ackinacki.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:22 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:22 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:23 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:24 +0700] "CONNECT app-backend.ackinacki.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:25 +0700] "CONNECT t.ackinacki.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:25 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:28 +0700] "CONNECT api-js.mixpanel.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:28 +0700] "CONNECT api-js.mixpanel.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:38 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:50:52 +0700] "CONNECT popits-issued.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:52 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:53 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:53 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:53 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:53 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:50:53 +0700] "CONNECT popits-temp.popit.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:51:08 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:51:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:51:14 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:51:15 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:51:41 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:51:43 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:52:04 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:10 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:10 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:11 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:12 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:13 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:13 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:13 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:13 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:13 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:13 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:14 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:16 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:17 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:17 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:17 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:18 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:19 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:28 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:28 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:34 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:34 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:34 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:34 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:34 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:35 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:35 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:35 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:36 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:36 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:37 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:38 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:38 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:38 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:38 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:38 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:38 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:39 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:39 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:39 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:40 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:41 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:42 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:42 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:45 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:45 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:46 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:47 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:47 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:47 +0700] "CONNECT cdn.lottielab.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:47 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:47 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:47 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:47 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:47 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:47 +0700] "CONNECT cdn.lottielab.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:47 +0700] "CONNECT cdn.lottielab.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:47 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:49 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:51 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:55 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:52:56 +0700] "CONNECT capsbot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:12:53:09 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:53:10 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:53:12 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:53:15 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:12:53:17 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 1.53.56.127 - admin [30/Apr/2025:12:53:18 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:18 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:20 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:20 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:12:53:20 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:21 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:21 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:21 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:21 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:22 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:22 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:22 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:23 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:23 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:23 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:24 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:25 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:25 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:25 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:25 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:26 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:27 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:27 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:27 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:27 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:27 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:27 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:53:28 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:28 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:29 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:30 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:30 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:30 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:30 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:53:30 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:54:20 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:54:24 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:54:26 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:55:06 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:55:10 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:55:11 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:55:11 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:55:11 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:55:24 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:56:25 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:56:40 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:56:40 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:56:40 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:12:56:40 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:12:56:41 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:07 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:07 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:08 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:09 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:09 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:10 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:10 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:10 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:10 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:11 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:11 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:11 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:12 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:12 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:12 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:13 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:13 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:13 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:13 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:13 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:14 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:15 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:15 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:15 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:15 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:15 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:15 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:15 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:16 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:16 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:01:18 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:01:18 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:02:06 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:02:08 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:02:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:02:31 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:03:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:03:21 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:03:37 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:03:37 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:03:37 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:03:37 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:32 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:32 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:33 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:33 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:35 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:35 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:35 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:35 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:36 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:36 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:36 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:37 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:37 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:37 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:39 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:39 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:40 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:40 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:40 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:40 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:40 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:41 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:41 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:41 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:41 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:41 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:41 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:22:41 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:42 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:22:43 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:23:05 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:23:05 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:23:33 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:23:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:23:55 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:24:38 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:24:46 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:24:56 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:24:57 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:24:57 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:24:57 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:00 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:00 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:02 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:02 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:03 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:03 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:03 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:03 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:04 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:04 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:04 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:05 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:05 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:05 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:06 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:06 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:07 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:07 +0700] "CONNECT x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:07 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:09 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:09 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:09 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:09 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:09 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:09 +0700] "CONNECT pbs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:09 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:30:10 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:10 +0700] "CONNECT api.x.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:11 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:12 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:30:12 +0700] "CONNECT abs-0.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:31:02 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:31:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:31:21 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:32:06 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:32:23 +0700] "CONNECT abs.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:32:23 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:32:23 +0700] "CONNECT api.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:32:23 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:32:23 +0700] "CONNECT video.twimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:41:05 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:46:46 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:46:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:49 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:49 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:49 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:49 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:46:50 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:50 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:50 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:50 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:46:50 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:57 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:57 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:46:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:01 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:02 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:09 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:09 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:09 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:09 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:10 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:10 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:10 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:10 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:10 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:11 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:11 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:11 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:13 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:13 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:13 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:13 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:13 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:13 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:13 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:14 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:15 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:15 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:16 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:18 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:21 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:21 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:23 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:23 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:23 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:23 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:23 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:24 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:25 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:28 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:28 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:29 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:29 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:31 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:31 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:34 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:34 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:34 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:35 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:35 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:35 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:35 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:36 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:36 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:36 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:36 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:36 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:36 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:36 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:37 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:37 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:37 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:37 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:37 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:37 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:38 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:38 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:38 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:39 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:39 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:40 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:40 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:40 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:42 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:42 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:44 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:44 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:45 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:45 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:45 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:46 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:47 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:47:47 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:50 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:50 +0700] "CONNECT bobapsoabauns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:50 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:47:52 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:13:47:54 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:13:48:22 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:48:32 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:48:35 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:48:39 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:48:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:48:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:48:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:48:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:48:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:48:39 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:48:40 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:48:45 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:48:46 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:48:46 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:03 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:14 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:16 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:17 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:18 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:18 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:18 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:18 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:19 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:19 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:20 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:23 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:23 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:29 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:29 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:29 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:29 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:29 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:29 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:30 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:31 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:31 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:31 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:31 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:31 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:31 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:31 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:31 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:32 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:32 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:32 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:32 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:32 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:32 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:32 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:32 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:32 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:32 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:32 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:33 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:35 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:35 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:35 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:35 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:35 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:35 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:36 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:38 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:39 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:39 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:40 +0700] "CONNECT www.okx-doh.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:41 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:43 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:43 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:43 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:43 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:43 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:43 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:45 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:47 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:48 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:49 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:50 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:50 +0700] "CONNECT richinfo.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:53 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:53 +0700] "CONNECT static.cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:54 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:54 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:54 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:54 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:54 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:54 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:54 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:54 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:54 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:54 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:54 +0700] "CONNECT static.sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:55 +0700] "CONNECT cdn.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:55 +0700] "CONNECT static.ads-twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:55 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:55 +0700] "CONNECT connect.facebook.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:55 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:55 +0700] "CONNECT sc-static.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:56 +0700] "CONNECT bridge.tonapi.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:56 +0700] "CONNECT sonartech.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:56 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:56 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:56 +0700] "CONNECT t.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:56 +0700] "CONNECT analytics.twitter.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:57 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:57 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:57 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:57 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:58 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:58 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:49:58 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:58 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:58 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:58 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:49:58 +0700] "CONNECT ushoaglosee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:00 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:02 +0700] "CONNECT sutheksoumt.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT pixel.tapad.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:04 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:04 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:04 +0700] "CONNECT tzegilo.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:05 +0700] "CONNECT tr.snapchat.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:06 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:07 +0700] "CONNECT c.us.heap-api.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:07 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:07 +0700] "CONNECT flerap.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:07 +0700] "CONNECT fleraprt.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:14 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:20 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:13:50:24 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115397 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:13:50:32 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:39 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:46 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:46 +0700] "CONNECT webapp.game.dropee.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:47 +0700] "CONNECT analytics.tiktok.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:54 +0700] "CONNECT cloudflareinsights.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:50:55 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:55 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:55 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:55 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:55 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:55 +0700] "CONNECT dropee.clicker-game-assets.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:57 +0700] "CONNECT dropee.clicker-game-api.tropee.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:50:57 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:51:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:51:35 +0700] "CONNECT heapanalytics.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:52:08 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:52:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:52:17 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:52:19 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:52:59 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:52:59 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:53:01 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:53:10 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:53:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:53:27 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:53:52 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:53:52 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:53:56 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:54:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:54:26 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:54:26 +0700] "CONNECT cdn.discordapp.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:54:37 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:55:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:24 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:24 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:27 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:27 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:28 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:28 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:28 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:28 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:29 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:29 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:29 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:30 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:30 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:30 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:32 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:34 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:34 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:34 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:34 +0700] "CONNECT cloud.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:35 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:36 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:37 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:37 +0700] "CONNECT gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:37 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:37 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:38 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:38 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:38 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:38 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:39 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:39 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:39 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:40 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:40 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:40 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:42 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:55:43 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:55:44 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:56:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:56:47 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:11 +0700] "CONNECT geo.myip.link:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:11 +0700] "CONNECT api.adspower.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:13 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:13 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:14 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:57:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:14 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:14 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:14 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:15 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:15 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:15 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:16 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:16 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:16 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:17 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:17 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:17 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:57:18 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:18 +0700] "CONNECT phishing-detection.metafi.codefi.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:18 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:18 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:18 +0700] "CONNECT testnet-rpc.monad.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:18 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:20 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:20 +0700] "CONNECT cloud.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:22 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:22 +0700] "CONNECT gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:22 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:22 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:22 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:22 +0700] "CONNECT lh3.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:22 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:57:23 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:23 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:23 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:23 +0700] "CONNECT lh3.googleusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:24 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:24 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:25 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:25 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:25 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:25 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:27 +0700] "CONNECT ogs.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:13:57:28 +0700] "CONNECT ssl.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:13:57:30 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:58:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:04 +0700] "CONNECT www.facebook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:14 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:32 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:33 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:34 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:35 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:36 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:36 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:36 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:37 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:37 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:37 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:37 +0700] "CONNECT data.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:37 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:37 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:40 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:40 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:47 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:48 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:49 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:51 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:51 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:51 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:52 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:52 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:52 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:52 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:52 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:52 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:52 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:52 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:52 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:52 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:53 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:53 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:53 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:55 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:57 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:59 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:59 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:13:59:59 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:59 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:13:59:59 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:00 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:00 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:01 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:10 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:11 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:12 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:12 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:12 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:13 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:23 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:23 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:23 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:25 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:25 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:25 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:26 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:27 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:29 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:29 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:29 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:29 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:29 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:29 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:29 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:31 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:32 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:32 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:32 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:34 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:34 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:35 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:35 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:35 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:36 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:36 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:00:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:39 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:14:00:40 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:14:00:41 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:00:47 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:17 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:17 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 1.53.56.127 - admin [30/Apr/2025:14:01:21 +0700] "CONNECT gateway-us-east1-c.discord.gg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 1.53.56.127 - admin [30/Apr/2025:14:01:25 +0700] "CONNECT discord.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:25 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:32 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:45 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:45 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:45 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:45 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:46 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:47 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:49 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:49 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:49 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:50 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:50 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:50 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:50 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:50 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:53 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:53 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:59 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:59 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:59 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:59 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:01:59 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:00 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:00 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:00 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:01 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:02 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:02 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:03 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:03 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:04 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:09 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:10 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:15 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:16 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:16 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:17 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:17 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:17 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:17 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:17 +0700] "CONNECT pluto-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:18 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:18 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:18 +0700] "CONNECT vesta-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:18 +0700] "CONNECT flora-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:18 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:22 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:24 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:26 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:29 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:30 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:31 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:31 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:31 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:31 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:33 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:33 +0700] "CONNECT miniapp.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:33 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:33 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:34 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:34 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:35 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:35 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:35 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:35 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:35 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:37 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:37 +0700] "CONNECT s3.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:37 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:39 +0700] "CONNECT protocol.openad.network:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:39 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:39 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:39 +0700] "CONNECT firedata.ourdex.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:40 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:40 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:40 +0700] "CONNECT tganalytics.xyz:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:41 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:45 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:02:45 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:47 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:51 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355723 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:14:02:51 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:02:53 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:14:02:57 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:22 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:23 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:23 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:29 +0700] "CONNECT tra.uxuy.one:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:47 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:48 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:48 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:49 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:50 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:51 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:51 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:51 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:51 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:51 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:52 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:52 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:52 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:58 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:03:59 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:00 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:04 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:05 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:12 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:12 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:12 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:12 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:12 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:12 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:13 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:13 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:14 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:15 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:15 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:15 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:16 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:16 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:16 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:17 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:17 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:17 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:17 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:17 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:17 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:17 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:20 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:20 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:24 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:25 +0700] "CONNECT cdnjs.cloudflare.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:27 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:28 +0700] "CONNECT firebase.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:28 +0700] "CONNECT web-sdk.smartlook.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:29 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:30 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:31 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:33 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:34 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:34 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:34 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:34 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:34 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:34 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:34 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:34 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:35 +0700] "CONNECT t.me:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:35 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:35 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:35 +0700] "CONNECT d1m299lrt4bqhp.cloudfront.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:45 +0700] "CONNECT web.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:45 +0700] "CONNECT manager.eu.smartlook.cloud:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:47 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:47 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:47 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:04:53 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:14:04:53 +0700] "CONNECT pinai-public.s3.us-east-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:04:55 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/acaldksiunzh56452py2db5mnbpa_120.0.6050.0/jamhcnnkihinmdlkakkaopbjbbcngflc_120.0.6050.0_all_dgzfpknn7v3zslsbhrwu6bt44e.crx3 HTTP/1.1" 200 1115358 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:14:05:04 +0700] "CONNECT cdn5.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:04 +0700] "CONNECT cdn4.cdn-telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:05 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:11 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:12 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:12 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:12 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:12 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:12 +0700] "CONNECT pinai-public.s3.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:13 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:34 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:34 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:34 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:38 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:38 +0700] "CONNECT prod-api.pinai.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:43 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:53 +0700] "CONNECT accounts.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:54 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:55 +0700] "CONNECT www.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:56 +0700] "CONNECT sanity-proxy-v2.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:56 +0700] "CONNECT api2.amplitude.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:56 +0700] "CONNECT apis.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:56 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:56 +0700] "CONNECT eppo-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:57 +0700] "CONNECT play.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:57 +0700] "CONNECT ogads-pa.clients6.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:05:58 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:58 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:05:58 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:02 +0700] "CONNECT metamask.github.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:02 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:02 +0700] "CONNECT mtalk.google.com:5228 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:02 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:02 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT wsdexpri.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT www.okx-httpdns.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:03 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT mainnet.infura.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT venus-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT wallet.okx.ac:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT wallet.okex.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT wallet.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:04 +0700] "CONNECT static.coinall.ltd:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT wallet.ouxyi.cash:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT static.okx.cab:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT kws1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT kws5-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:05 +0700] "CONNECT kws2-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:07 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:08 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:09 +0700] "CONNECT kws1-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:14 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:15 +0700] "CONNECT fonts.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:15 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:17 +0700] "CONNECT www.googletagmanager.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:17 +0700] "CONNECT sad.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:17 +0700] "CONNECT www.adstar.tech:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:18 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:18 +0700] "CONNECT telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:18 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:18 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:19 +0700] "CONNECT api.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT tonkeeper.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT wallet.tg:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT static.mytonwallet.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT app.tobiwallet.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT pub.tomo.inc:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT tonhub.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT img.bitgetimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT public.bnbstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT cdn.mirailabs.co:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT chain-cdn.uxuy.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT xtonwallet.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT wallet.ton.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT img.gatedataimg.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT static.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT s.pvcliping.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT hk.tpstatic.net:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:20 +0700] "CONNECT raw.githubusercontent.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:21 +0700] "CONNECT o4508014316617728.ingest.us.sentry.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:21 +0700] "CONNECT front.tabibot.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:21 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:21 +0700] "CONNECT fonts.gstatic.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:22 +0700] "CONNECT www.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:26 +0700] "CONNECT android.clients.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:33 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:33 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:33 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:33 +0700] "CONNECT s3.ap-northeast-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:33 +0700] "CONNECT s3.us-west-1.amazonaws.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:36 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:37 +0700] "CONNECT api.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:40 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:40 +0700] "CONNECT image.adsgram.ai:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:53 +0700] "CONNECT update.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:06:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:06:59 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/mc3m2avnj4o5l5sigvt4iaha2e_20250411.743742949.14/obedbbhbpmojnkanicioggnmelmoomoc_20250411.743742949.14_all_ENUS500000_hrpnlhv73b6hgzx5art6tkjxhu.crx3 HTTP/1.1" 200 5355684 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:14:07:00 +0700] "GET http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/j2hxfei2occ5siitujtlwgp6xi_3/ojhpjlocmbogdgmfpkhlaaeamibhnphh_3_all_gplutbkdljxxbjolk3siq7kive.crx3 HTTP/1.1" 200 879038 "HTTP" "" 171.243.49.211 - admin [30/Apr/2025:14:07:28 +0700] "CONNECT phishing-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:07:30 +0700] "CONNECT client-side-detection.api.cx.metamask.io:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:07:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:23 +0700] "CONNECT safebrowsing.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:08:38 +0700] "CONNECT optimizationguide-pa.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:08:38 +0700] "CONNECT kws4-1.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:51 +0700] "CONNECT blowfish-blocklist-proxy.phantom.app:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:51 +0700] "CONNECT web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:53 +0700] "CONNECT www.google.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:54 +0700] "CONNECT wallet.okx.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:55 +0700] "CONNECT kws2.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:55 +0700] "CONNECT venus.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:55 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:55 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:55 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:55 +0700] "CONNECT content-autofill.googleapis.com:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 172.16.0.111" 171.243.49.211 - admin [30/Apr/2025:14:08:55 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:55 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196" 171.243.49.211 - admin [30/Apr/2025:14:08:55 +0700] "CONNECT pluto.web.telegram.org:443 HTTP/1.1" 200 0 "HTTPS" "outgoing via 115.165.166.196"