0% found this document useful (0 votes)
424 views22 pages

DNS Packet Analysis Logs

The document contains log entries of DNS queries being made from IP addresses 192.168.5.28 and 192.168.4.85. It logs the DNS queries, any CNAME redirects, the DNS responses with IP addresses or negative responses for non-existent domains. It shows lookups for domains related to TikTok, Lazada, Truecaller and other services.

Uploaded by

AkankAfidz
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
424 views22 pages

DNS Packet Analysis Logs

The document contains log entries of DNS queries being made from IP addresses 192.168.5.28 and 192.168.4.85. It logs the DNS queries, any CNAME redirects, the DNS responses with IP addresses or negative responses for non-existent domains. It shows lookups for domains related to TikTok, Lazada, Truecaller and other services.

Uploaded by

AkankAfidz
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
You are on page 1/ 22

Jul/09/2022 09:17:43 dns,packet id:d379 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'

Jul/09/2022 09:17:43 dns,packet question: push-rtmp-f5-gcp01.tiktokcdn.com.:A:IN


Jul/09/2022 09:17:43 dns,packet answer:
Jul/09/2022 09:17:43 dns,packet <push-rtmp-f5-gcp01.tiktokcdn.com.:CNAME:59=push-
rtmp-f5-gcp01.tiktokcdn.com.c.worldfcdn.com.>
Jul/09/2022 09:17:43 dns,packet <push-rtmp-f5-
gcp01.tiktokcdn.com.c.worldfcdn.com.:CNAME:58=push-fcdn-base-
oversea.s.worldfcdn.com.>
Jul/09/2022 09:17:43 dns,packet <push-fcdn-base-
oversea.s.worldfcdn.com.:A:3=129.227.36.101>
Jul/09/2022 09:17:43 dns,packet <push-fcdn-base-
oversea.s.worldfcdn.com.:A:4=129.227.36.100>
Jul/09/2022 09:17:43 dns,packet --- got query from 192.168.5.28:15439:
Jul/09/2022 09:17:43 dns,packet id:69e rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: pull-flv-l1-va01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:43 dns query from 192.168.5.28: #27605 pull-flv-l1-
va01.tiktokcdn.com. AAAA
Jul/09/2022 09:17:43 dns,packet --- sending udp query to 8.8.4.4:53:
Jul/09/2022 09:17:43 dns,packet id:827c rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: pull-flv-l1-va01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:43 dns,packet --- got query from 192.168.5.28:45452:
Jul/09/2022 09:17:43 dns,packet id:f5c0 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: pull-flv-l1-va01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:43 dns query from 192.168.5.28: #27606 pull-flv-l1-
va01.tiktokcdn.com. A
Jul/09/2022 09:17:43 dns,packet --- sending udp query to 8.8.4.4:53:
Jul/09/2022 09:17:43 dns,packet id:9e6c rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: pull-flv-l1-va01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:43 dns,packet --- got query from 192.168.4.85:11407:
Jul/09/2022 09:17:43 dns,packet id:5ce9 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:43 dns query from 192.168.4.85: #27607 com.lazada.android. A
Jul/09/2022 09:17:43 dns,packet --- sending udp query to 8.8.4.4:53:
Jul/09/2022 09:17:43 dns,packet id:3ed9 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:43 dns,packet --- got query from 192.168.4.85:1863:
Jul/09/2022 09:17:43 dns,packet id:e1f7 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: obus-sg.dc.heytapmobile.com.:AAAA:IN
Jul/09/2022 09:17:43 dns query from 192.168.4.85: #27608 obus-
sg.dc.heytapmobile.com. AAAA
Jul/09/2022 09:17:43 dns,packet --- sending udp query to 8.8.4.4:53:
Jul/09/2022 09:17:43 dns,packet id:62a8 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: sgp-datac-heytapmobile-pubgw-
1791009759.ap-southeast-1.elb.amazonaws.com.:AAAA:IN
Jul/09/2022 09:17:43 dns,packet --- got query from 192.168.4.85:62590:
Jul/09/2022 09:17:43 dns,packet id:d212 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: android-context-data.googleapis.com.:A:IN
Jul/09/2022 09:17:43 dns query from 192.168.4.85: #27609 android-context-
data.googleapis.com. A
Jul/09/2022 09:17:43 dns done query: #27609 android-context-data.googleapis.com.
74.125.24.95
Jul/09/2022 09:17:43 dns,packet --- sending reply to 192.168.4.85:62590:
Jul/09/2022 09:17:43 dns,packet id:d212 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: android-context-data.googleapis.com.:A:IN
Jul/09/2022 09:17:43 dns,packet answer:
Jul/09/2022 09:17:43 dns,packet <android-context-
data.googleapis.com.:A:69=74.125.24.95>
Jul/09/2022 09:17:43 dns,packet --- got query from 192.168.4.85:15866:
Jul/09/2022 09:17:43 dns,packet id:9ed2 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: mdp-appconf-sg.heytapdl.com.:AAAA:IN
Jul/09/2022 09:17:43 dns query from 192.168.4.85: #27610 mdp-appconf-
sg.heytapdl.com. AAAA
Jul/09/2022 09:17:43 dns done query: #27610 mdp-appconf-sg.heytapdl.com.
2404:c0:400a::727d:a0b8
Jul/09/2022 09:17:43 dns,packet --- sending reply to 192.168.4.85:15866:
Jul/09/2022 09:17:43 dns,packet id:9ed2 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: mdp-appconf-sg.heytapdl.com.:AAAA:IN
Jul/09/2022 09:17:43 dns,packet answer:
Jul/09/2022 09:17:43 dns,packet <mdp-appconf-
sg.heytapdl.com.:CNAME:321=heytapdl.com.akamaized.net.>
Jul/09/2022 09:17:43 dns,packet
<heytapdl.com.akamaized.net.:CNAME:296=a745.dscd.akamai.net.>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:AAAA:3=0x47d0a0>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:AAAA:3=0x47d0a0>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:AAAA:3=0x47d0a0>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:AAAA:3=0x47d0a0>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:AAAA:3=0x47d0a0>
Jul/09/2022 09:17:43 dns,packet additional:
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.80>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.169>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.170>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.73>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.144>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.163>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.145>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.184>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.179>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.152>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.186>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.169>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.170>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.73>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.144>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.163>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.145>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.184>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.179>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.152>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.186>
Jul/09/2022 09:17:43 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.80>
Jul/09/2022 09:17:43 dns,packet --- got query from 192.168.4.85:42918:
Jul/09/2022 09:17:43 dns,packet id:a789 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: 1.4.168.192.in-addr.arpa.:PTR:IN
Jul/09/2022 09:17:43 dns query from 192.168.4.85: #27611 1.4.168.192.in-addr.arpa.
PTR
Jul/09/2022 09:17:43 dns done query: #27611 kakank.net.
Jul/09/2022 09:17:43 dns,packet --- sending reply to 192.168.4.85:42918:
Jul/09/2022 09:17:43 dns,packet id:a789 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: 1.4.168.192.in-addr.arpa.:PTR:IN
Jul/09/2022 09:17:43 dns,packet answer:
Jul/09/2022 09:17:43 dns,packet <1.4.168.192.in-addr.arpa.:PTR:300=kakank.net.>
Jul/09/2022 09:17:43 dns,packet additional:
Jul/09/2022 09:17:43 dns,packet <kakank.net.:A:300=192.168.4.1>
Jul/09/2022 09:17:43 dns,packet --- got query from 192.168.4.85:59386:
Jul/09/2022 09:17:43 dns,packet id:8bf9 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: com.truecaller.:A:IN
Jul/09/2022 09:17:43 dns query from 192.168.4.85: #27612 com.truecaller. A
Jul/09/2022 09:17:43 dns done query: #27612 dns name does not exist
Jul/09/2022 09:17:43 dns,packet --- sending reply to 192.168.4.85:59386:
Jul/09/2022 09:17:43 dns,packet id:8bf9 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:43 dns,packet question: com.truecaller.:A:IN
Jul/09/2022 09:17:43 dns,packet --- got query from 192.168.4.85:44337:
Jul/09/2022 09:17:43 dns,packet id:cd2a rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: com.truecaller.:A:IN
Jul/09/2022 09:17:43 dns query from 192.168.4.85: #27613 com.truecaller. A
Jul/09/2022 09:17:43 dns done query: #27613 dns name does not exist
Jul/09/2022 09:17:43 dns,packet --- sending reply to 192.168.4.85:44337:
Jul/09/2022 09:17:43 dns,packet id:cd2a rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:43 dns,packet question: com.truecaller.:A:IN
Jul/09/2022 09:17:43 dns,packet --- got answer from 8.8.4.4:53:
Jul/09/2022 09:17:43 dns,packet id:3ed9 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:43 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:43 dns,packet authority:
Jul/09/2022 09:17:43 dns,packet <android.:SOA:83=mname:ns-
tld1.charlestonroadregistry.com. rname:cloud-dns-hostmaster.google.com. serial:1
refresh:21600 retry:3600 expire:259200 min:900>
Jul/09/2022 09:17:43 dns done query: #27607 dns name does not exist
Jul/09/2022 09:17:43 dns,packet --- sending reply to 192.168.4.85:11407:
Jul/09/2022 09:17:43 dns,packet id:5ce9 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:43 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:43 dns,packet --- got answer from 8.8.4.4:53:
Jul/09/2022 09:17:43 dns,packet id:9e6c rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: pull-flv-l1-va01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:43 dns,packet answer:
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-va01.tiktokcdn.com.:CNAME:48=pull-flv-
l1-va01.tiktokcdn.com.wsdvs.com.>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=117.103.116.160>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=117.103.116.162>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=163.171.220.238>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=36.66.223.196>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=163.171.220.235>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.65>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=36.66.90.223>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.11>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.64>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.68>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.73>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.66>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.71>
Jul/09/2022 09:17:43 dns done query: #27606 pull-flv-l1-va01.tiktokcdn.com.
117.103.116.160
Jul/09/2022 09:17:43 dns,packet --- sending reply to 192.168.5.28:45452:
Jul/09/2022 09:17:43 dns,packet id:f5c0 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: pull-flv-l1-va01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:43 dns,packet answer:
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-va01.tiktokcdn.com.:CNAME:48=pull-flv-
l1-va01.tiktokcdn.com.wsdvs.com.>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=117.103.116.160>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=117.103.116.162>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=163.171.220.238>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=36.66.223.196>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=163.171.220.235>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.65>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=36.66.90.223>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.11>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.64>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.68>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.73>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.66>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.71>
Jul/09/2022 09:17:43 dns,packet --- got answer from 8.8.4.4:53:
Jul/09/2022 09:17:43 dns,packet id:62a8 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: sgp-datac-heytapmobile-pubgw-
1791009759.ap-southeast-1.elb.amazonaws.com.:AAAA:IN
Jul/09/2022 09:17:43 dns,packet authority:
Jul/09/2022 09:17:43 dns,packet <ap-southeast-1.elb.amazonaws.com.:SOA:5=mname:ns-
1125.awsdns-12.org. rname:awsdns-hostmaster.amazon.com. serial:1 refresh:7200
retry:900 expire:1209600 min:60>
Jul/09/2022 09:17:43 dns done query: #27608 dns name exists, but no appropriate
record
Jul/09/2022 09:17:43 dns,packet --- sending reply to 192.168.4.85:1863:
Jul/09/2022 09:17:43 dns,packet id:e1f7 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: obus-sg.dc.heytapmobile.com.:AAAA:IN
Jul/09/2022 09:17:43 dns,packet --- got answer from 8.8.4.4:53:
Jul/09/2022 09:17:43 dns,packet id:827c rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: pull-flv-l1-va01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:43 dns,packet answer:
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-va01.tiktokcdn.com.:CNAME:40=pull-flv-
l1-va01.tiktokcdn.com.wsdvs.com.>
Jul/09/2022 09:17:43 dns,packet authority:
Jul/09/2022 09:17:43 dns,packet <wsdvs.com.:SOA:54=mname:dns1.wsdvs.info.
rname:webmaster.glb0.lxdns.com. serial:1422577239 refresh:10800 retry:3600
expire:604800 min:60>
Jul/09/2022 09:17:43 dns done query: #27605 dns name exists, but no appropriate
record
Jul/09/2022 09:17:43 dns,packet --- sending reply to 192.168.5.28:15439:
Jul/09/2022 09:17:43 dns,packet id:69e rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: pull-flv-l1-va01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:43 dns,packet answer:
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-va01.tiktokcdn.com.:CNAME:40=pull-flv-
l1-va01.tiktokcdn.com.wsdvs.com.>
Jul/09/2022 09:17:43 dns,packet additional:
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=163.171.220.238>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=36.66.223.196>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=163.171.220.235>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.65>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=36.66.90.223>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.11>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.64>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.68>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.73>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.66>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=202.179.139.71>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=117.103.116.160>
Jul/09/2022 09:17:43 dns,packet <pull-flv-l1-
va01.tiktokcdn.com.wsdvs.com.:A:19=117.103.116.162>
Jul/09/2022 09:17:43 dns,packet --- got query from 192.168.4.85:11874:
Jul/09/2022 09:17:43 dns,packet id:b466 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: com.truecaller.:A:IN
Jul/09/2022 09:17:43 dns query from 192.168.4.85: #27614 com.truecaller. A
Jul/09/2022 09:17:43 dns done query: #27614 dns name does not exist
Jul/09/2022 09:17:43 dns,packet --- sending reply to 192.168.4.85:11874:
Jul/09/2022 09:17:43 dns,packet id:b466 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:43 dns,packet question: com.truecaller.:A:IN
Jul/09/2022 09:17:43 dns,packet --- got query from 192.168.4.85:13376:
Jul/09/2022 09:17:43 dns,packet id:a0f1 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:43 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:43 dns query from 192.168.4.85: #27615 com.lazada.android. A
Jul/09/2022 09:17:43 dns done query: #27615 dns name does not exist
Jul/09/2022 09:17:43 dns,packet --- sending reply to 192.168.4.85:13376:
Jul/09/2022 09:17:43 dns,packet id:a0f1 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:44 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:64997:
Jul/09/2022 09:17:44 dns,packet id:ecf3 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: android.clients.google.com.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27616
android.clients.google.com. A
Jul/09/2022 09:17:44 dns done query: #27616 android.clients.google.com.
142.251.12.101
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:64997:
Jul/09/2022 09:17:44 dns,packet id:ecf3 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: android.clients.google.com.:A:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet
<android.clients.google.com.:CNAME:212=android.l.google.com.>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.12.101>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=172.217.194.138>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.12.100>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.10.113>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=172.217.194.102>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.12.139>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.10.138>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.10.101>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.12.102>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.10.139>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=172.217.194.139>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=172.217.194.101>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.10.102>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.12.113>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.10.100>
Jul/09/2022 09:17:44 dns,packet <android.l.google.com.:A:246=142.251.12.138>
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:16815:
Jul/09/2022 09:17:44 dns,packet id:824e rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27617 com.lazada.android. A
Jul/09/2022 09:17:44 dns done query: #27617 dns name does not exist
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:16815:
Jul/09/2022 09:17:44 dns,packet id:824e rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:44 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.5.28:65361:
Jul/09/2022 09:17:44 dns,packet id:ec05 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-hls-f58-sg01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:44 dns query from 192.168.5.28: #27618 pull-hls-f58-
sg01.tiktokcdn.com. AAAA
Jul/09/2022 09:17:44 dns done query: #27618 pull-hls-f58-sg01.tiktokcdn.com.
2a03:90c0:321:2803::253
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.5.28:65361:
Jul/09/2022 09:17:44 dns,packet id:ec05 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-hls-f58-sg01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet <pull-hls-f58-sg01.tiktokcdn.com.:CNAME:293=cl-
41e83a90.gcdn.co.>
Jul/09/2022 09:17:44 dns,packet <cl-41e83a90.gcdn.co.:AAAA:33=0x45a5e0>
Jul/09/2022 09:17:44 dns,packet additional:
Jul/09/2022 09:17:44 dns,packet <cl-41e83a90.gcdn.co.:A:53=92.223.116.253>
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.5.28:23915:
Jul/09/2022 09:17:44 dns,packet id:1690 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-hls-f58-sg01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.5.28: #27619 pull-hls-f58-
sg01.tiktokcdn.com. A
Jul/09/2022 09:17:44 dns done query: #27619 pull-hls-f58-sg01.tiktokcdn.com.
92.223.116.253
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.5.28:23915:
Jul/09/2022 09:17:44 dns,packet id:1690 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-hls-f58-sg01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet <pull-hls-f58-sg01.tiktokcdn.com.:CNAME:293=cl-
41e83a90.gcdn.co.>
Jul/09/2022 09:17:44 dns,packet <cl-41e83a90.gcdn.co.:A:53=92.223.116.253>
Jul/09/2022 09:17:44 dns local query: #27620 ali-sgp-cdn.snackvideo.in. A
Jul/09/2022 09:17:44 dns done query: #27620 ali-sgp-cdn.snackvideo.in 45.200.8.229
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:3113:
Jul/09/2022 09:17:44 dns,packet id:ad8e rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: play-fe.googleapis.com.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27621 play-fe.googleapis.com. A
Jul/09/2022 09:17:44 dns done query: #27621 play-fe.googleapis.com. 74.125.68.102
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:3113:
Jul/09/2022 09:17:44 dns,packet id:ad8e rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: play-fe.googleapis.com.:A:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet <play-fe.googleapis.com.:A:211=74.125.68.102>
Jul/09/2022 09:17:44 dns,packet <play-fe.googleapis.com.:A:211=74.125.68.138>
Jul/09/2022 09:17:44 dns,packet <play-fe.googleapis.com.:A:211=74.125.68.101>
Jul/09/2022 09:17:44 dns,packet <play-fe.googleapis.com.:A:211=74.125.68.113>
Jul/09/2022 09:17:44 dns,packet <play-fe.googleapis.com.:A:211=74.125.68.100>
Jul/09/2022 09:17:44 dns,packet <play-fe.googleapis.com.:A:211=74.125.68.139>
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:38074:
Jul/09/2022 09:17:44 dns,packet id:3518 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: com.truecaller.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27622 com.truecaller. A
Jul/09/2022 09:17:44 dns done query: #27622 dns name does not exist
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:38074:
Jul/09/2022 09:17:44 dns,packet id:3518 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:44 dns,packet question: com.truecaller.:A:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:60640:
Jul/09/2022 09:17:44 dns,packet id:c77f rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: com.truecaller.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27623 com.truecaller. A
Jul/09/2022 09:17:44 dns done query: #27623 dns name does not exist
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:60640:
Jul/09/2022 09:17:44 dns,packet id:c77f rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:44 dns,packet question: com.truecaller.:A:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:1706:
Jul/09/2022 09:17:44 dns,packet id:e17d rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: play-lh.googleusercontent.com.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27624 play-
lh.googleusercontent.com. A
Jul/09/2022 09:17:44 dns,packet --- sending udp query to 8.8.4.4:53:
Jul/09/2022 09:17:44 dns,packet id:33b4 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: play-lh.googleusercontent.com.:A:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.5.28:48127:
Jul/09/2022 09:17:44 dns,packet id:822c rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-cmaf-f16-va01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.5.28: #27625 pull-cmaf-f16-
va01.tiktokcdn.com. A
Jul/09/2022 09:17:44 dns,packet --- sending udp query to 8.8.4.4:53:
Jul/09/2022 09:17:44 dns,packet id:8f8a rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: a1819.z.akamai.net.:A:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.5.28:50542:
Jul/09/2022 09:17:44 dns,packet id:f063 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-cmaf-f16-va01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:44 dns query from 192.168.5.28: #27626 pull-cmaf-f16-
va01.tiktokcdn.com. AAAA
Jul/09/2022 09:17:44 dns,packet --- sending udp query to 8.8.4.4:53:
Jul/09/2022 09:17:44 dns,packet id:4c8b rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: a1819.z.akamai.net.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:1592:
Jul/09/2022 09:17:44 dns,packet id:3237 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: videoclipf.apps.coloros.com.:AAAA:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27627
videoclipf.apps.coloros.com. AAAA
Jul/09/2022 09:17:44 dns,packet --- sending udp query to 8.8.4.4:53:
Jul/09/2022 09:17:44 dns,packet id:75c8 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: sgp-allawn-fourier-coloros-pub-
1324555244.ap-southeast-1.elb.amazonaws.com.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:20560:
Jul/09/2022 09:17:44 dns,packet id:160 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: videoclipf.apps.coloros.com.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:13677:
Jul/09/2022 09:17:44 dns,packet id:471f rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: videoclipf.apps.coloros.com.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27628
videoclipf.apps.coloros.com. A
Jul/09/2022 09:17:44 dns done query: #27628 videoclipf.apps.coloros.com.
54.251.209.245
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:13677:
Jul/09/2022 09:17:44 dns,packet id:471f rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: videoclipf.apps.coloros.com.:A:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet <videoclipf.apps.coloros.com.:CNAME:404=sgp-allawn-
fourier-coloros-pub-1324555244.ap-southeast-1.elb.amazonaws.com.>
Jul/09/2022 09:17:44 dns,packet <sgp-allawn-fourier-coloros-pub-1324555244.ap-
southeast-1.elb.amazonaws.com.:A:47=54.251.209.245>
Jul/09/2022 09:17:44 dns,packet <sgp-allawn-fourier-coloros-pub-1324555244.ap-
southeast-1.elb.amazonaws.com.:A:47=54.255.167.246>
Jul/09/2022 09:17:44 dns,packet <sgp-allawn-fourier-coloros-pub-1324555244.ap-
southeast-1.elb.amazonaws.com.:A:47=52.221.51.84>
Jul/09/2022 09:17:44 dns,packet <sgp-allawn-fourier-coloros-pub-1324555244.ap-
southeast-1.elb.amazonaws.com.:A:47=52.76.140.50>
Jul/09/2022 09:17:44 dns,packet <sgp-allawn-fourier-coloros-pub-1324555244.ap-
southeast-1.elb.amazonaws.com.:A:47=52.76.176.5>
Jul/09/2022 09:17:44 dns,packet <sgp-allawn-fourier-coloros-pub-1324555244.ap-
southeast-1.elb.amazonaws.com.:A:47=18.136.74.171>
Jul/09/2022 09:17:44 dns,packet <sgp-allawn-fourier-coloros-pub-1324555244.ap-
southeast-1.elb.amazonaws.com.:A:47=52.221.125.204>
Jul/09/2022 09:17:44 dns,packet <sgp-allawn-fourier-coloros-pub-1324555244.ap-
southeast-1.elb.amazonaws.com.:A:47=54.151.213.77>
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:46462:
Jul/09/2022 09:17:44 dns,packet id:a6d2 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27629 com.lazada.android. A
Jul/09/2022 09:17:44 dns done query: #27629 dns name does not exist
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:46462:
Jul/09/2022 09:17:44 dns,packet id:a6d2 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:44 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:27604:
Jul/09/2022 09:17:44 dns,packet id:453a rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: www.google.com.:AAAA:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27630 www.google.com. AAAA
Jul/09/2022 09:17:44 dns done query: #27630 www.google.com. 2001:4860:4802:32::78
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:27604:
Jul/09/2022 09:17:44 dns,packet id:453a rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: www.google.com.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet
<www.google.com.:CNAME:5=forcesafesearch.google.com.>
Jul/09/2022 09:17:44 dns,packet <forcesafesearch.google.com.:AAAA:53960=0x435360>
Jul/09/2022 09:17:44 dns,packet additional:
Jul/09/2022 09:17:44 dns,packet
<forcesafesearch.google.com.:A:53959=216.239.38.120>
Jul/09/2022 09:17:44 dns,packet --- got answer from 8.8.4.4:53:
Jul/09/2022 09:17:44 dns,packet id:8f8a rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: a1819.z.akamai.net.:A:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet <a1819.z.akamai.net.:A:12=114.125.160.138>
Jul/09/2022 09:17:44 dns,packet <a1819.z.akamai.net.:A:12=114.125.160.177>
Jul/09/2022 09:17:44 dns done query: #27625 pull-cmaf-f16-va01.tiktokcdn.com.
114.125.160.138
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.5.28:48127:
Jul/09/2022 09:17:44 dns,packet id:822c rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-cmaf-f16-va01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet <pull-cmaf-f16-va01.tiktokcdn.com.:CNAME:82=pull-
cmaf-f16-va01.tiktokcdn.com.akamaized.net.>
Jul/09/2022 09:17:44 dns,packet <pull-cmaf-f16-
va01.tiktokcdn.com.akamaized.net.:CNAME:14665=a1819.z.akamai.net.>
Jul/09/2022 09:17:44 dns,packet <a1819.z.akamai.net.:A:12=114.125.160.138>
Jul/09/2022 09:17:44 dns,packet <a1819.z.akamai.net.:A:12=114.125.160.177>
Jul/09/2022 09:17:44 dns,packet --- got answer from 8.8.4.4:53:
Jul/09/2022 09:17:44 dns,packet id:33b4 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: play-lh.googleusercontent.com.:A:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet <play-
lh.googleusercontent.com.:A:295=142.251.10.119>
Jul/09/2022 09:17:44 dns done query: #27624 play-lh.googleusercontent.com.
142.251.10.119
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:1706:
Jul/09/2022 09:17:44 dns,packet id:e17d rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: play-lh.googleusercontent.com.:A:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet <play-
lh.googleusercontent.com.:A:295=142.251.10.119>
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:20954:
Jul/09/2022 09:17:44 dns,packet id:9a25 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27631 com.lazada.android. A
Jul/09/2022 09:17:44 dns done query: #27631 dns name does not exist
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:20954:
Jul/09/2022 09:17:44 dns,packet id:9a25 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:44 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:44 dns,packet --- got answer from 8.8.4.4:53:
Jul/09/2022 09:17:44 dns,packet id:75c8 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: sgp-allawn-fourier-coloros-pub-
1324555244.ap-southeast-1.elb.amazonaws.com.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet authority:
Jul/09/2022 09:17:44 dns,packet <ap-southeast-1.elb.amazonaws.com.:SOA:31=mname:ns-
1125.awsdns-12.org. rname:awsdns-hostmaster.amazon.com. serial:1 refresh:7200
retry:900 expire:1209600 min:60>
Jul/09/2022 09:17:44 dns done query: #27627 dns name exists, but no appropriate
record
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:1592:
Jul/09/2022 09:17:44 dns,packet id:3237 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: videoclipf.apps.coloros.com.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:20560:
Jul/09/2022 09:17:44 dns,packet id:160 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: videoclipf.apps.coloros.com.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet --- got answer from 8.8.4.4:53:
Jul/09/2022 09:17:44 dns,packet id:4c8b rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: a1819.z.akamai.net.:AAAA:IN
Jul/09/2022 09:17:44 web-proxy,account 192.168.4.88 POST http://dt.beyla.site/?
length=2917 action=allow cache=MISS
Jul/09/2022 09:17:44 web-proxy,debug POST /?length=2917 HTTP/1.1
Jul/09/2022 09:17:44 web-proxy,debug Accept-Charset: UTF-8
Jul/09/2022 09:17:44 web-proxy,debug User-Agent: Dalvik/2.1.0 (Linux; U;
Android 10; M2007J20CG MIUI/V12.0.7.0.QJGIDXM)
Jul/09/2022 09:17:44 web-proxy,debug Content-Type: application/x-www-form-
urlencoded
Jul/09/2022 09:17:44 web-proxy,debug Transfer-Encoding: chunked
Jul/09/2022 09:17:44 web-proxy,debug Host: dt.beyla.site
Jul/09/2022 09:17:44 web-proxy,debug Accept-Encoding: gzip
Jul/09/2022 09:17:44 web-proxy,debug X-Proxy-ID: 243981661
Jul/09/2022 09:17:44 web-proxy,debug X-Forwarded-For: 192.168.4.88
Jul/09/2022 09:17:44 web-proxy,debug Via: 1.1 ::ffff:192.168.4.1 (Mikrotik
HttpProxy)
Jul/09/2022 09:17:44 web-proxy,debug
Jul/09/2022 09:17:44 dns,packet authority:
Jul/09/2022 09:17:44 dns,packet <z.akamai.net.:SOA:571=mname:n0z.akamai.net.
rname:hostmaster.akamai.com. serial:1657328714 refresh:1000 retry:1000 expire:1000
min:1800>
Jul/09/2022 09:17:44 dns done query: #27626 dns name exists, but no appropriate
record
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.5.28:50542:
Jul/09/2022 09:17:44 dns,packet id:f063 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-cmaf-f16-va01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:44 dns local query: #27632 connectivitycheck.gstatic.com. A
Jul/09/2022 09:17:44 dns done query: #27632 connectivitycheck.gstatic.com
142.251.10.94
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:45982:
Jul/09/2022 09:17:44 dns,packet id:cbb2 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27633 com.lazada.android. A
Jul/09/2022 09:17:44 dns done query: #27633 dns name does not exist
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:45982:
Jul/09/2022 09:17:44 dns,packet id:cbb2 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'name error'
Jul/09/2022 09:17:44 dns,packet question: com.lazada.android.:A:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.5.28:2890:
Jul/09/2022 09:17:44 dns,packet id:f7a4 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-flv-l11-gcp01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:44 dns query from 192.168.5.28: #27634 pull-flv-l11-
gcp01.tiktokcdn.com. AAAA
Jul/09/2022 09:17:44 dns,packet --- sending udp query to 8.8.4.4:53:
Jul/09/2022 09:17:44 dns,packet id:1dc7 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question:
tiktok.freeflow.sched.ovscdns.net.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.5.28:42745:
Jul/09/2022 09:17:44 dns,packet id:a930 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-flv-l11-gcp01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.5.28: #27635 pull-flv-l11-
gcp01.tiktokcdn.com. A
Jul/09/2022 09:17:44 dns done query: #27635 pull-flv-l11-gcp01.tiktokcdn.com.
101.33.26.135
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.5.28:42745:
Jul/09/2022 09:17:44 dns,packet id:a930 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-flv-l11-gcp01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet <pull-flv-l11-
gcp01.tiktokcdn.com.:CNAME:19=flv.ab.tiktokcdn.com.liveplay.myqcloud.com.>
Jul/09/2022 09:17:44 dns,packet
<flv.ab.tiktokcdn.com.liveplay.myqcloud.com.:CNAME:255=tiktok.freeflow.sched.ovscdn
s.net.>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=101.33.26.135>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=81.199.97.63>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=103.160.155.89>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=81.199.99.112>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=81.199.99.111>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=101.33.26.137>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=101.33.26.118>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=101.33.27.58>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=101.33.26.117>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=101.33.27.61>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=101.33.27.62>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=81.199.97.196>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=101.33.26.196>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=101.33.26.115>
Jul/09/2022 09:17:44 dns,packet
<tiktok.freeflow.sched.ovscdns.net.:A:25=103.160.155.107>
Jul/09/2022 09:17:44 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:44 dns,packet id:faeb rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: 213.170.8.119.in-addr.arpa.:PTR:IN
Jul/09/2022 09:17:44 dns local query: #27636 connectivitycheck.gstatic.com. A
Jul/09/2022 09:17:44 dns done query: #27636 connectivitycheck.gstatic.com
142.251.10.94
Jul/09/2022 09:17:44 dns,packet --- got answer from 8.8.4.4:53:
Jul/09/2022 09:17:44 dns,packet id:1dc7 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question:
tiktok.freeflow.sched.ovscdns.net.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet authority:
Jul/09/2022 09:17:44 dns,packet <ovscdns.net.:SOA:215=mname:ns1.ovscdns.net.
rname:webmaster.ovscdns.net. serial:1341562830 refresh:300 retry:600 expire:86400
min:300>
Jul/09/2022 09:17:44 dns done query: #27634 dns name exists, but no appropriate
record
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.5.28:2890:
Jul/09/2022 09:17:44 dns,packet id:f7a4 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-flv-l11-gcp01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.4.85:47442:
Jul/09/2022 09:17:44 dns,packet id:22b6 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: mdp-appconf-id.heytapdl.com.:AAAA:IN
Jul/09/2022 09:17:44 dns query from 192.168.4.85: #27637 mdp-appconf-
id.heytapdl.com. AAAA
Jul/09/2022 09:17:44 dns done query: #27637 mdp-appconf-id.heytapdl.com.
2404:c0:400a::727d:a049
Jul/09/2022 09:17:44 dns,packet --- sending reply to 192.168.4.85:47442:
Jul/09/2022 09:17:44 dns,packet id:22b6 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: mdp-appconf-id.heytapdl.com.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet answer:
Jul/09/2022 09:17:44 dns,packet <mdp-appconf-
id.heytapdl.com.:CNAME:322=heytapdl.com.akamaized.net.>
Jul/09/2022 09:17:44 dns,packet
<heytapdl.com.akamaized.net.:CNAME:296=a745.dscd.akamai.net.>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:AAAA:3=0x488580>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:AAAA:3=0x488580>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:AAAA:3=0x488580>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:AAAA:3=0x488580>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:AAAA:3=0x488580>
Jul/09/2022 09:17:44 dns,packet additional:
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.170>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.73>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.144>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.163>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.145>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.184>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.179>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.152>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.186>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.80>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.169>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.73>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.144>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.163>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.145>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.184>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.179>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.152>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:6=114.125.160.186>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.80>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.169>
Jul/09/2022 09:17:44 dns,packet <a745.dscd.akamai.net.:A:4=114.125.160.170>
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.5.28:26077:
Jul/09/2022 09:17:44 dns,packet id:3eeb rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-cmaf-f77-
gcp01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:44 dns query from 192.168.5.28: #27638 pull-cmaf-f77-
gcp01.tiktokcdn.com. AAAA
Jul/09/2022 09:17:44 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:44 dns,packet id:7536 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: 1925505597.rsc.cdn77.org.:AAAA:IN
Jul/09/2022 09:17:44 dns,packet --- got query from 192.168.5.28:30911:
Jul/09/2022 09:17:44 dns,packet id:8ab2 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:44 dns,packet question: pull-cmaf-f77-gcp01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:44 dns query from 192.168.5.28: #27639 pull-cmaf-f77-
gcp01.tiktokcdn.com. A
Jul/09/2022 09:17:44 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 web-proxy,account 192.168.4.88 POST
http://www.pullcm.com/relayserver/4.0/cmds?
trace_id=93509f7c65e54942921fcf1318e03f4b action=allow cache=MISS
Jul/09/2022 09:17:45 web-proxy,debug POST /relayserver/4.0/cmds?
trace_id=93509f7c65e54942921fcf1318e03f4b HTTP/1.1
Jul/09/2022 09:17:45 web-proxy,debug Accept-Charset: UTF-8
Jul/09/2022 09:17:45 web-proxy,debug trace_id: 93509f7c65e54942921fcf1318e03f4b
Jul/09/2022 09:17:45 web-proxy,debug portal: cmd_pull
Jul/09/2022 09:17:45 web-proxy,debug Accept-Encoding: gzip,br
Jul/09/2022 09:17:45 web-proxy,debug Content-Type: application/json
Jul/09/2022 09:17:45 web-proxy,debug Content-Length: 7627
Jul/09/2022 09:17:45 web-proxy,debug Host: www.pullcm.com
Jul/09/2022 09:17:45 web-proxy,debug User-Agent: okhttp/3.10.0
Jul/09/2022 09:17:45 web-proxy,debug X-Proxy-ID: 243981661
Jul/09/2022 09:17:45 web-proxy,debug X-Forwarded-For: 192.168.4.88
Jul/09/2022 09:17:45 web-proxy,debug Via: 1.1 ::ffff:192.168.4.1 (Mikrotik
HttpProxy)
Jul/09/2022 09:17:45 web-proxy,debug
Jul/09/2022 09:17:45 web-proxy,account 192.168.5.136 GET
http://connectivitycheck.gstatic.com/generate_204 action=allow cache=MISS
Jul/09/2022 09:17:45 web-proxy,debug GET
http://connectivitycheck.gstatic.com/generate_204 HTTP/1.1
Jul/09/2022 09:17:45 web-proxy,debug User-Agent: Mozilla/5.0 (X11; Linux
x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/60.0.3112.32 Safari/537.36
Jul/09/2022 09:17:45 web-proxy,debug Host: connectivitycheck.gstatic.com
Jul/09/2022 09:17:45 web-proxy,debug Accept-Encoding: gzip
Jul/09/2022 09:17:45 web-proxy,debug X-Proxy-ID: 243981661
Jul/09/2022 09:17:45 web-proxy,debug X-Forwarded-For: 192.168.5.136
Jul/09/2022 09:17:45 web-proxy,debug Via: 1.1 ::ffff:192.168.4.1 (Mikrotik
HttpProxy)
Jul/09/2022 09:17:45 web-proxy,debug
Jul/09/2022 09:17:45 web-proxy,debug Response to "POST
http://www.pullcm.com/relayserver/4.0/cmds?
trace_id=93509f7c65e54942921fcf1318e03f4b":
Jul/09/2022 09:17:45 web-proxy,debug HTTP/1.1 200 OK
Jul/09/2022 09:17:45 web-proxy,debug Date: Sat, 09 Jul 2022 01:17:44 GMT
Jul/09/2022 09:17:45 web-proxy,debug Content-Type: text/html; charset=UTF-8
Jul/09/2022 09:17:45 web-proxy,debug Transfer-Encoding: chunked
Jul/09/2022 09:17:45 web-proxy,debug Vary: Accept-Encoding
Jul/09/2022 09:17:45 web-proxy,debug Server: elb
Jul/09/2022 09:17:45 web-proxy,debug
Jul/09/2022 09:17:45 web-proxy,debug Response to "GET
http://connectivitycheck.gstatic.com/generate_204":
Jul/09/2022 09:17:45 web-proxy,debug HTTP/1.1 302 Found
Jul/09/2022 09:17:45 web-proxy,debug Cache-Control: no-cache
Jul/09/2022 09:17:45 web-proxy,debug Content-Length: 784
Jul/09/2022 09:17:45 web-proxy,debug Content-Type: text/html
Jul/09/2022 09:17:45 web-proxy,debug Date: Sat, 09 Jul 2022 01:17:44 GMT
Jul/09/2022 09:17:45 web-proxy,debug Expires: Sun, 09 Jul 2023 01:17:44 GMT
Jul/09/2022 09:17:45 web-proxy,debug Last-Modified: Sat, 09 Jul 2022 01:17:44
GMT
Jul/09/2022 09:17:45 web-proxy,debug Location: http://kakank.net/login?dst=http
%3A%2F%2Fconnectivitycheck.gstatic.com%2Fgenerate%5F204
Jul/09/2022 09:17:45 web-proxy,debug X-Frame-Options: sameorigin
Jul/09/2022 09:17:45 web-proxy,debug
Jul/09/2022 09:17:45 dns,packet id:bbaf rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: 1925505597.rsc.cdn77.org.:A:IN
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.4.85:54485:
Jul/09/2022 09:17:45 dns,packet id:f175 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: adx-id.ads.heytapmobile.com.:AAAA:IN
Jul/09/2022 09:17:45 dns query from 192.168.4.85: #27640 adx-
id.ads.heytapmobile.com. AAAA
Jul/09/2022 09:17:45 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:e913 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: sgp-ads-heytapmobile-pubgw-344151928.ap-
southeast-1.elb.amazonaws.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.5.97:37322:
Jul/09/2022 09:17:45 dns,packet id:b0ac rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: mon16-normal-
useast1a.tiktokv.com.:AAAA:IN
Jul/09/2022 09:17:45 dns query from 192.168.5.97: #27641 mon16-normal-
useast1a.tiktokv.com. AAAA
Jul/09/2022 09:17:45 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:4cbc rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: e28622.a.akamaiedge.net.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got answer from 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:7536 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: 1925505597.rsc.cdn77.org.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet authority:
Jul/09/2022 09:17:45 dns,packet <cdn77.org.:SOA:27=mname:ns1.cdn77.org.
rname:admin.cdn77.com. serial:1657329067 refresh:10800 retry:180 expire:14400
min:60>
Jul/09/2022 09:17:45 dns done query: #27638 dns name exists, but no appropriate
record
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.5.28:26077:
Jul/09/2022 09:17:45 dns,packet id:3eeb rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-cmaf-f77-
gcp01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got answer from 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:bbaf rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: 1925505597.rsc.cdn77.org.:A:IN
Jul/09/2022 09:17:45 dns,packet answer:
Jul/09/2022 09:17:45 dns,packet <1925505597.rsc.cdn77.org.:A:5=143.244.58.92>
Jul/09/2022 09:17:45 dns,packet <1925505597.rsc.cdn77.org.:A:5=143.244.58.93>
Jul/09/2022 09:17:45 dns done query: #27639 pull-cmaf-f77-gcp01.tiktokcdn.com.
143.244.58.92
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.5.28:30911:
Jul/09/2022 09:17:45 dns,packet id:8ab2 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-cmaf-f77-gcp01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:45 dns,packet answer:
Jul/09/2022 09:17:45 dns,packet <pull-cmaf-f77-
gcp01.tiktokcdn.com.:CNAME:554=1925505597.rsc.cdn77.org.>
Jul/09/2022 09:17:45 dns,packet <1925505597.rsc.cdn77.org.:A:5=143.244.58.92>
Jul/09/2022 09:17:45 dns,packet <1925505597.rsc.cdn77.org.:A:5=143.244.58.93>
Jul/09/2022 09:17:45 dns,packet --- got answer from 8.8.8.8:53:
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: LCP lowerup
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: LCP open
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: rcvd LCP ConfReq id=0x1
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <mru 1480>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <magic 0x6fef6826>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: sent LCP ConfReq id=0x1
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <mru 1492>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <magic 0x65d71130>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <auth mschap2>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: sent LCP ConfAck id=0x1
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <mru 1480>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <magic 0x6fef6826>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: rcvd LCP ConfAck id=0x1
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <mru 1492>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <magic 0x65d71130>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <auth mschap2>
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: LCP opened
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: sent CHAP Challenge id=0x1
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <challenge len=16>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <name kakank.net>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: rcvd LCP EchoReq id=0x0
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <magic 0x6fef6826>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: sent LCP EchoRep id=0x0
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <magic 0x65d71130>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: rcvd CHAP Response id=0x1
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <response len=49>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <name arul>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: sent CHAP Failure id=0x1
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet E=691 R=0
C=A0656EC5D13F5BFEE4C7AF17B6300983 V=3 M=bad username or password
Jul/09/2022 09:17:45 pppoe,ppp,error <00f8>: user arul authentication failed
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: LCP close
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: LCP closed
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: sent LCP TermReq id=0x2
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet user arul authentication failed
Jul/09/2022 09:17:45 pppoe,debug,packet bridge HOTSPOT: rcvd PADI from
D8:32:14:7A:D4:77
Jul/09/2022 09:17:45 pppoe,debug,packet session-id=0x0000
Jul/09/2022 09:17:45 pppoe,debug,packet service-name=
Jul/09/2022 09:17:45 pppoe,debug,packet host-uniq=0xad6b0000
Jul/09/2022 09:17:45 pppoe,debug,packet bridge HOTSPOT: sent PADO to
D8:32:14:7A:D4:77
Jul/09/2022 09:17:45 pppoe,debug,packet session-id=0x0000
Jul/09/2022 09:17:45 pppoe,debug,packet host-uniq=0xad6b0000
Jul/09/2022 09:17:45 pppoe,debug,packet service-name=
Jul/09/2022 09:17:45 pppoe,debug,packet ac-name=kakank.net
Jul/09/2022 09:17:45 pppoe,debug,packet service-name=service_pppoe
Jul/09/2022 09:17:45 pppoe,debug,packet bridge HOTSPOT: rcvd PADR from
D8:32:14:7A:D4:77
Jul/09/2022 09:17:45 pppoe,debug,packet session-id=0x0000
Jul/09/2022 09:17:45 pppoe,debug,packet service-name=
Jul/09/2022 09:17:45 pppoe,debug,packet host-uniq=0xad6b0000
Jul/09/2022 09:17:45 pppoe,info PPPoE connection established from D8:32:14:7A:D4:77
Jul/09/2022 09:17:45 pppoe,debug,packet bridge HOTSPOT: sent PADS to
D8:32:14:7A:D4:77
Jul/09/2022 09:17:45 pppoe,debug,packet session-id=0x00f8
Jul/09/2022 09:17:45 pppoe,debug,packet host-uniq=0xad6b0000
Jul/09/2022 09:17:45 pppoe,debug,packet service-name=
Jul/09/2022 09:17:45 web-proxy,account 192.168.4.159 GET
http://connectivitycheck.gstatic.com/generate_204 action=allow cache=MISS
Jul/09/2022 09:17:45 web-proxy,debug GET
http://connectivitycheck.gstatic.com/generate_204 HTTP/1.1
Jul/09/2022 09:17:45 web-proxy,debug User-Agent: Dalvik/2.1.0 (Linux; U;
Android 11; RMX2001 Build/RP1A.200720.011)
Jul/09/2022 09:17:45 web-proxy,debug Host: connectivitycheck.gstatic.com
Jul/09/2022 09:17:45 web-proxy,debug Accept-Encoding: gzip
Jul/09/2022 09:17:45 web-proxy,debug X-Proxy-ID: 243981661
Jul/09/2022 09:17:45 web-proxy,debug X-Forwarded-For: 192.168.4.159
Jul/09/2022 09:17:45 web-proxy,debug Via: 1.1 ::ffff:192.168.4.1 (Mikrotik
HttpProxy)
Jul/09/2022 09:17:45 web-proxy,debug
Jul/09/2022 09:17:45 web-proxy,account 192.168.4.88 POST
http://www.pullcm.com/relayserver/2.0/cmdreport?
trace_id=4e07a0a12a7d4e4e9a9ea3e320cfd17c action=allow cache=MISS
Jul/09/2022 09:17:45 web-proxy,debug POST /relayserver/2.0/cmdreport?
trace_id=4e07a0a12a7d4e4e9a9ea3e320cfd17c HTTP/1.1
Jul/09/2022 09:17:45 web-proxy,debug Accept-Charset: UTF-8
Jul/09/2022 09:17:45 web-proxy,debug trace_id: 4e07a0a12a7d4e4e9a9ea3e320cfd17c
Jul/09/2022 09:17:45 web-proxy,debug portal: cmd_report
Jul/09/2022 09:17:45 web-proxy,debug Accept-Encoding: gzip,br
Jul/09/2022 09:17:45 web-proxy,debug Content-Type: application/json
Jul/09/2022 09:17:45 web-proxy,debug Content-Length: 2245
Jul/09/2022 09:17:45 web-proxy,debug Host: www.pullcm.com
Jul/09/2022 09:17:45 web-proxy,debug User-Agent: okhttp/3.10.0
Jul/09/2022 09:17:45 web-proxy,debug X-Proxy-ID: 243981661
Jul/09/2022 09:17:45 web-proxy,debug X-Forwarded-For: 192.168.4.88
Jul/09/2022 09:17:45 web-proxy,debug Via: 1.1 ::ffff:192.168.4.1 (Mikrotik
HttpProxy)
Jul/09/2022 09:17:45 web-proxy,debug
Jul/09/2022 09:17:45 web-proxy,debug Response to "POST http://dt.beyla.site/?
length=2917":
Jul/09/2022 09:17:45 web-proxy,debug HTTP/1.1 200 OK
Jul/09/2022 09:17:45 web-proxy,debug Date: Sat, 09 Jul 2022 01:17:44 GMT
Jul/09/2022 09:17:45 web-proxy,debug Content-Type: text/html; charset=UTF-8
Jul/09/2022 09:17:45 web-proxy,debug Transfer-Encoding: chunked
Jul/09/2022 09:17:45 web-proxy,debug Server: openresty
Jul/09/2022 09:17:45 web-proxy,debug
Jul/09/2022 09:17:45 web-proxy,debug Response to "GET
http://connectivitycheck.gstatic.com/generate_204":
Jul/09/2022 09:17:45 web-proxy,debug HTTP/1.1 302 Found
Jul/09/2022 09:17:45 web-proxy,debug Cache-Control: no-cache
Jul/09/2022 09:17:45 web-proxy,debug Content-Length: 784
Jul/09/2022 09:17:45 web-proxy,debug Content-Type: text/html
Jul/09/2022 09:17:45 web-proxy,debug Date: Sat, 09 Jul 2022 01:17:45 GMT
Jul/09/2022 09:17:45 web-proxy,debug Expires: Sun, 09 Jul 2023 01:17:45 GMT
Jul/09/2022 09:17:45 web-proxy,debug Last-Modified: Sat, 09 Jul 2022 01:17:45
GMT
Jul/09/2022 09:17:45 web-proxy,debug Location: http://kakank.net/login?dst=http
%3A%2F%2Fconnectivitycheck.gstatic.com%2Fgenerate%5F204
Jul/09/2022 09:17:45 web-proxy,debug X-Frame-Options: sameorigin
Jul/09/2022 09:17:45 web-proxy,debug
Jul/09/2022 09:17:45 dns,packet id:e913 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: sgp-ads-heytapmobile-pubgw-344151928.ap-
southeast-1.elb.amazonaws.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet authority:
Jul/09/2022 09:17:45 dns,packet <ap-southeast-1.elb.amazonaws.com.:SOA:37=mname:ns-
1125.awsdns-12.org. rname:awsdns-hostmaster.amazon.com. serial:1 refresh:7200
retry:900 expire:1209600 min:60>
Jul/09/2022 09:17:45 dns done query: #27640 dns name exists, but no appropriate
record
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.4.85:54485:
Jul/09/2022 09:17:45 dns,packet id:f175 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: adx-id.ads.heytapmobile.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got answer from 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:4cbc rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: e28622.a.akamaiedge.net.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet authority:
Jul/09/2022 09:17:45 dns,packet
<a.akamaiedge.net.:SOA:570=mname:n0a.akamaiedge.net. rname:hostmaster.akamai.com.
serial:1657328713 refresh:1000 retry:1000 expire:1000 min:1800>
Jul/09/2022 09:17:45 dns done query: #27641 dns name exists, but no appropriate
record
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.5.97:37322:
Jul/09/2022 09:17:45 dns,packet id:b0ac rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: mon16-normal-
useast1a.tiktokv.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.4.101:1465:
Jul/09/2022 09:17:45 dns,packet id:ca73 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: frontier-i18n.tiktokv.com.:AAAA:IN
Jul/09/2022 09:17:45 dns query from 192.168.4.101: #27642 frontier-
i18n.tiktokv.com. AAAA
Jul/09/2022 09:17:45 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:3f43 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: all.frontier-i18n-
gcpva.byteoversea.net.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.5.28:13361:
Jul/09/2022 09:17:45 dns,packet id:fbb2 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-sg01.ttlivecdn.com.:AAAA:IN
Jul/09/2022 09:17:45 dns query from 192.168.5.28: #27643 pull-f5-
sg01.ttlivecdn.com. AAAA
Jul/09/2022 09:17:45 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:3864 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-
sg01.ttlivecdn.com.c.worldfcdn.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.5.28:35588:
Jul/09/2022 09:17:45 dns,packet id:1a61 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-sg01.ttlivecdn.com.:A:IN
Jul/09/2022 09:17:45 dns query from 192.168.5.28: #27644 pull-f5-
sg01.ttlivecdn.com. A
Jul/09/2022 09:17:45 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 web-proxy,debug Response to "POST
http://www.pullcm.com/relayserver/2.0/cmdreport?
trace_id=4e07a0a12a7d4e4e9a9ea3e320cfd17c":
Jul/09/2022 09:17:45 web-proxy,debug HTTP/1.1 200 OK
Jul/09/2022 09:17:45 web-proxy,debug Date: Sat, 09 Jul 2022 01:17:45 GMT
Jul/09/2022 09:17:45 web-proxy,debug Content-Type: text/html; charset=UTF-8
Jul/09/2022 09:17:45 web-proxy,debug Transfer-Encoding: chunked
Jul/09/2022 09:17:45 web-proxy,debug Vary: Accept-Encoding
Jul/09/2022 09:17:45 web-proxy,debug Server: elb
Jul/09/2022 09:17:45 web-proxy,debug
Jul/09/2022 09:17:45 dns,packet id:1044 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-
sg01.ttlivecdn.com.c.worldfcdn.com.:A:IN
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.5.97:35098:
Jul/09/2022 09:17:45 dns,packet id:871a rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: mon16-normal-useast1a.tiktokv.com.:A:IN
Jul/09/2022 09:17:45 dns query from 192.168.5.97: #27645 mon16-normal-
useast1a.tiktokv.com. A
Jul/09/2022 09:17:45 dns done query: #27645 mon16-normal-useast1a.tiktokv.com.
114.125.211.176
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.5.97:35098:
Jul/09/2022 09:17:45 dns,packet id:871a rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: mon16-normal-useast1a.tiktokv.com.:A:IN
Jul/09/2022 09:17:45 dns,packet answer:
Jul/09/2022 09:17:45 dns,packet <mon16-normal-useast1a.tiktokv.com.:CNAME:48=mon16-
normal-useast1a.tiktokv.com.edgekey.net.>
Jul/09/2022 09:17:45 dns,packet <mon16-normal-
useast1a.tiktokv.com.edgekey.net.:CNAME:11894=e28622.a.akamaiedge.net.>
Jul/09/2022 09:17:45 dns,packet <e28622.a.akamaiedge.net.:A:1=114.125.211.176>
Jul/09/2022 09:17:45 dns,packet <e28622.a.akamaiedge.net.:A:1=114.125.211.178>
Jul/09/2022 09:17:45 dns,packet <e28622.a.akamaiedge.net.:A:1=114.125.211.184>
Jul/09/2022 09:17:45 dns,packet <e28622.a.akamaiedge.net.:A:1=114.125.211.186>
Jul/09/2022 09:17:45 dns,packet <e28622.a.akamaiedge.net.:A:1=114.125.211.187>
Jul/09/2022 09:17:45 dns,packet <e28622.a.akamaiedge.net.:A:1=114.125.211.179>
Jul/09/2022 09:17:45 dns,packet <e28622.a.akamaiedge.net.:A:1=114.125.211.193>
Jul/09/2022 09:17:45 dns,packet <e28622.a.akamaiedge.net.:A:1=114.125.211.177>
Jul/09/2022 09:17:45 dns,packet <e28622.a.akamaiedge.net.:A:1=114.125.211.192>
Jul/09/2022 09:17:45 dns,packet --- got answer from 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:3f43 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: all.frontier-i18n-
gcpva.byteoversea.net.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet authority:
Jul/09/2022 09:17:45 dns,packet <byteoversea.net.:SOA:4264=mname:a9-66.akam.net.
rname:hostmaster.akamai.com. serial:1563512321 refresh:43200 retry:7200
expire:604800 min:7200>
Jul/09/2022 09:17:45 dns done query: #27642 dns name exists, but no appropriate
record
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.4.101:1465:
Jul/09/2022 09:17:45 dns,packet id:ca73 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: frontier-i18n.tiktokv.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got answer from 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:3864 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-
sg01.ttlivecdn.com.c.worldfcdn.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet answer:
Jul/09/2022 09:17:45 dns,packet <pull-f5-
sg01.ttlivecdn.com.c.worldfcdn.com.:CNAME:57=pull-fcdn-base-
oversea.s.worldfcdn.com.>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <0068>: rcvd LCP EchoReq id=0x22
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <magic 0xfa4b41fb>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <0068>: sent LCP EchoRep id=0x22
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <magic 0x13d4952a>
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: rcvd LCP TermReq id=0x2
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet Failed to authenticate ourselves to
peer
Jul/09/2022 09:17:45 pppoe,ppp,debug,packet <00f8>: sent LCP TermAck id=0x2
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: LCP lowerdown
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: CCP close
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: BCP close
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: IPCP close
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: IPV6CP close
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: MPLSCP close
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: LCP lowerdown
Jul/09/2022 09:17:45 pppoe,ppp,debug <00f8>: LCP down event in starting state
Jul/09/2022 09:17:45 pppoe,debug,packet bridge HOTSPOT: sent PADT to
D8:32:14:7A:D4:77
Jul/09/2022 09:17:45 pppoe,debug,packet session-id=0x00f8
Jul/09/2022 09:17:45 web-proxy,account 192.168.5.32 POST http://dts.ushareit.com/?
length=789 action=allow cache=MISS
Jul/09/2022 09:17:45 web-proxy,debug POST /?length=789 HTTP/1.1
Jul/09/2022 09:17:45 web-proxy,debug Accept-Charset: UTF-8
Jul/09/2022 09:17:45 web-proxy,debug Transfer-Encoding: chunked
Jul/09/2022 09:17:45 web-proxy,debug Content-Type: application/x-www-form-
urlencoded
Jul/09/2022 09:17:45 web-proxy,debug User-Agent: Dalvik/2.1.0 (Linux; U;
Android 8.1.0; SM-J260G Build/M1AJB)
Jul/09/2022 09:17:45 web-proxy,debug Host: dts.ushareit.com
Jul/09/2022 09:17:45 web-proxy,debug Accept-Encoding: gzip
Jul/09/2022 09:17:45 web-proxy,debug X-Proxy-ID: 243981661
Jul/09/2022 09:17:45 web-proxy,debug X-Forwarded-For: 192.168.5.32
Jul/09/2022 09:17:45 web-proxy,debug Via: 1.1 ::ffff:192.168.4.1 (Mikrotik
HttpProxy)
Jul/09/2022 09:17:45 web-proxy,debug
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-base-
oversea.s.worldfcdn.com.:CNAME:52=pull-fcdn-oversae5.s.worldfcdn.com.>
Jul/09/2022 09:17:45 dns,packet authority:
Jul/09/2022 09:17:45 dns,packet <worldfcdn.com.:SOA:573=mname:vip3.alidns.com.
rname:hostmaster.hichina.com. serial:2019121914 refresh:3600 retry:1200
expire:86400 min:360>
Jul/09/2022 09:17:45 dns done query: #27643 dns name exists, but no appropriate
record
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.5.28:13361:
Jul/09/2022 09:17:45 dns,packet id:fbb2 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-sg01.ttlivecdn.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet answer:
Jul/09/2022 09:17:45 dns,packet <pull-f5-
sg01.ttlivecdn.com.c.worldfcdn.com.:CNAME:57=pull-fcdn-base-
oversea.s.worldfcdn.com.>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-base-
oversea.s.worldfcdn.com.:CNAME:52=pull-fcdn-oversae5.s.worldfcdn.com.>
Jul/09/2022 09:17:45 dns,packet additional:
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
oversae5.s.worldfcdn.com.:A:31=156.59.78.15>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
oversae5.s.worldfcdn.com.:A:31=156.59.78.15>
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.4.101:30963:
Jul/09/2022 09:17:45 dns,packet id:e179 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: frontier-i18n.tiktokv.com.:A:IN
Jul/09/2022 09:17:45 dns query from 192.168.4.101: #27646 frontier-
i18n.tiktokv.com. A
Jul/09/2022 09:17:45 dns done query: #27646 frontier-i18n.tiktokv.com.
147.160.190.177
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.4.101:30963:
Jul/09/2022 09:17:45 dns,packet id:e179 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: frontier-i18n.tiktokv.com.:A:IN
Jul/09/2022 09:17:45 dns,packet answer:
Jul/09/2022 09:17:45 dns,packet <frontier-i18n.tiktokv.com.:CNAME:32=all.frontier-
i18n-gcpva.byteoversea.net.>
Jul/09/2022 09:17:45 dns,packet <all.frontier-i18n-
gcpva.byteoversea.net.:A:31=147.160.190.177>
Jul/09/2022 09:17:45 dns,packet <all.frontier-i18n-
gcpva.byteoversea.net.:A:31=147.160.190.113>
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.4.225:3038:
Jul/09/2022 09:17:45 dns,packet id:b2a6 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: tnc16-platform-
useast1a.tiktokv.com.:AAAA:IN
Jul/09/2022 09:17:45 dns query from 192.168.4.225: #27647 tnc16-platform-
useast1a.tiktokv.com. AAAA
Jul/09/2022 09:17:45 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:3a89 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: e28622.api2.akamaiedge.net.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got answer from 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:1044 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-
sg01.ttlivecdn.com.c.worldfcdn.com.:A:IN
Jul/09/2022 09:17:45 dns,packet answer:
Jul/09/2022 09:17:45 dhcp,debug dhcp2 received discover id 1988698000 from 0.0.0.0
'1:c0:47:54:9c:a9:e1'
Jul/09/2022 09:17:45 dhcp,debug,packet ciaddr = 0.0.0.0
Jul/09/2022 09:17:45 dhcp,debug,packet chaddr = C0:47:54:9C:A9:E1
Jul/09/2022 09:17:45 dhcp,debug,packet Host-Name = "V2039"
Jul/09/2022 09:17:45 dhcp,debug,packet Msg-Type = discover
Jul/09/2022 09:17:45 dhcp,debug,packet Parameter-List = Subnet-
Mask,Router,Domain-Server,Domain-Name,Interface-MTU,Broadcast-Address,Address-
Time,Renewal-Time,Rebinding-Time,Vendor-Specific,Captive-Portal,Unknown(108)
Jul/09/2022 09:17:45 dhcp,debug,packet Max-DHCP-Message-Size = 1500
Jul/09/2022 09:17:45 dhcp,debug,packet Class-Id = "android-dhcp-11"
Jul/09/2022 09:17:45 dhcp,debug,packet Client-Id = 01-C0-47-54-9C-A9-E1
Jul/09/2022 09:17:45 dhcp,debug,packet Unknown(80) =
Jul/09/2022 09:17:45 dhcp,debug lease not found, new lease, acquire
Jul/09/2022 09:17:45 dhcp,debug ping 192.168.4.97
Jul/09/2022 09:17:45 dns,packet <pull-f5-
sg01.ttlivecdn.com.c.worldfcdn.com.:CNAME:53=pull-fcdn-base-
oversea.s.worldfcdn.com.>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-base-
oversea.s.worldfcdn.com.:CNAME:27=pull-fcdn-oversae5.s.worldfcdn.com.>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
oversae5.s.worldfcdn.com.:A:30=156.59.78.15>
Jul/09/2022 09:17:45 dns done query: #27644 pull-f5-sg01.ttlivecdn.com.
156.59.78.15
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.5.28:35588:
Jul/09/2022 09:17:45 dns,packet id:1a61 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-sg01.ttlivecdn.com.:A:IN
Jul/09/2022 09:17:45 dns,packet answer:
Jul/09/2022 09:17:45 dns,packet <pull-f5-
sg01.ttlivecdn.com.c.worldfcdn.com.:CNAME:53=pull-fcdn-base-
oversea.s.worldfcdn.com.>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-base-
oversea.s.worldfcdn.com.:CNAME:27=pull-fcdn-oversae5.s.worldfcdn.com.>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
oversae5.s.worldfcdn.com.:A:30=156.59.78.15>
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.5.28:24437:
Jul/09/2022 09:17:45 dns,packet id:9838 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-gcp01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:45 dns query from 192.168.5.28: #27648 pull-f5-
gcp01.tiktokcdn.com. AAAA
Jul/09/2022 09:17:45 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:5bd0 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-fcdn-gcp10.s.worldfcdn.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.5.28:23149:
Jul/09/2022 09:17:45 dns,packet id:7f22 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-gcp01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:45 dns query from 192.168.5.28: #27649 pull-f5-
gcp01.tiktokcdn.com. A
Jul/09/2022 09:17:45 dns done query: #27649 pull-f5-gcp01.tiktokcdn.com.
129.227.36.112
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.5.28:23149:
Jul/09/2022 09:17:45 dns,packet id:7f22 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-gcp01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:45 dns,packet answer:
Jul/09/2022 09:17:45 dns,packet <pull-f5-gcp01.tiktokcdn.com.:CNAME:85=pull-f5-
gcp01.tiktokcdn.com.c.worldfcdn.com.>
Jul/09/2022 09:17:45 dns,packet <pull-f5-
gcp01.tiktokcdn.com.c.worldfcdn.com.:CNAME:15=pull-fcdn-gcp-total.s.worldfcdn.com.>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-gcp-
total.s.worldfcdn.com.:CNAME:12=pull-fcdn-gcp6.s.worldfcdn.com.>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=129.227.36.112>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=129.227.36.17>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-gcp6.s.worldfcdn.com.:A:12=156.59.78.19>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=156.59.78.148>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=156.59.78.172>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=156.59.78.194>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=156.59.78.189>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=156.59.78.181>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=156.59.78.175>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=156.59.78.183>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=156.59.78.178>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=156.59.78.182>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=156.59.78.188>
Jul/09/2022 09:17:45 dns,packet <pull-fcdn-
gcp6.s.worldfcdn.com.:A:12=156.59.78.196>
Jul/09/2022 09:17:45 dns,packet --- got answer from 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:3a89 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: e28622.api2.akamaiedge.net.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet authority:
Jul/09/2022 09:17:45 dns,packet
<api2.akamaiedge.net.:SOA:960=mname:n0api2.akamaiedge.net.
rname:hostmaster.akamai.com. serial:1657329103 refresh:1000 retry:1000 expire:1000
min:1800>
Jul/09/2022 09:17:45 dns done query: #27647 dns name exists, but no appropriate
record
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.4.225:3038:
Jul/09/2022 09:17:45 dns,packet id:b2a6 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: tnc16-platform-
useast1a.tiktokv.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got answer from 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:5bd0 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-fcdn-gcp10.s.worldfcdn.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet authority:
Jul/09/2022 09:17:45 dns,packet <worldfcdn.com.:SOA:481=mname:vip3.alidns.com.
rname:hostmaster.hichina.com. serial:2019121914 refresh:3600 retry:1200
expire:86400 min:360>
Jul/09/2022 09:17:45 dns done query: #27648 dns name exists, but no appropriate
record
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.5.28:24437:
Jul/09/2022 09:17:45 dns,packet id:9838 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-f5-gcp01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:45 dns local query: #27650 t-id.ads.heytapmobile.com. A
Jul/09/2022 09:17:45 dns done query: #27650 t-id.ads.heytapmobile.com 13.250.66.171
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.4.85:24914:
Jul/09/2022 09:17:45 dns,packet id:a1b3 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: www.tiktok.com.:A:IN
Jul/09/2022 09:17:45 dns query from 192.168.4.85: #27651 www.tiktok.com. A
Jul/09/2022 09:17:45 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:de28 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: www.tiktok.com.:A:IN
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.5.28:8211:
Jul/09/2022 09:17:45 dns,packet id:b24a rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-flv-f1-sg01.tiktokcdn.com.:AAAA:IN
Jul/09/2022 09:17:45 dns query from 192.168.5.28: #27652 pull-flv-f1-
sg01.tiktokcdn.com. AAAA
Jul/09/2022 09:17:45 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:2470 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-flv-f1-
sg01.tiktokcdn.com.wsdvs.com.:AAAA:IN
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.5.28:60260:
Jul/09/2022 09:17:45 dns,packet id:1261 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-flv-f1-sg01.tiktokcdn.com.:A:IN
Jul/09/2022 09:17:45 dns query from 192.168.5.28: #27653 pull-flv-f1-
sg01.tiktokcdn.com. A
Jul/09/2022 09:17:45 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:7d21 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: pull-flv-f1-
sg01.tiktokcdn.com.wsdvs.com.:A:IN
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.4.85:7991:
Jul/09/2022 09:17:45 dns,packet id:935c rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: web.whatsapp.com.:A:IN
Jul/09/2022 09:17:45 dns query from 192.168.4.85: #27654 web.whatsapp.com. A
Jul/09/2022 09:17:45 dns done query: #27654 web.whatsapp.com. 31.13.95.60
Jul/09/2022 09:17:45 dns,packet --- sending reply to 192.168.4.85:7991:
Jul/09/2022 09:17:45 dns,packet id:935c rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: web.whatsapp.com.:A:IN
Jul/09/2022 09:17:45 dns,packet answer:
Jul/09/2022 09:17:45 dns,packet <web.whatsapp.com.:CNAME:110=mmx-
ds.cdn.whatsapp.net.>
Jul/09/2022 09:17:45 dns,packet <mmx-ds.cdn.whatsapp.net.:A:8=31.13.95.60>
Jul/09/2022 09:17:45 dns local query: #27655 connectivitycheck.gstatic.com. A
Jul/09/2022 09:17:45 dns done query: #27655 connectivitycheck.gstatic.com
142.251.10.94
Jul/09/2022 09:17:45 dns,packet --- got query from 192.168.4.85:53161:
Jul/09/2022 09:17:45 dns,packet id:6524 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: www.cnnindonesia.com.:A:IN
Jul/09/2022 09:17:45 dns query from 192.168.4.85: #27656 www.cnnindonesia.com. A
Jul/09/2022 09:17:45 dns,packet --- sending udp query to 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:8e89 rd:1 tc:0 aa:0 qr:0 ra:0 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: www.cnnindonesia.com.:A:IN
Jul/09/2022 09:17:45 dns,packet --- got answer from 8.8.8.8:53:
Jul/09/2022 09:17:45 dns,packet id:de28 rd:1 tc:0 aa:0 qr:1 ra:1 QUERY 'no error'
Jul/09/2022 09:17:45 dns,packet question: www.tiktok.com.:A:IN
Jul/09/2022 09:17:45 dns,packet answer:
Jul/09/2022 09:17:45 dns,packet
<www.tiktok.com.:CNAME:258=www.tiktok.com.edgesuite.net.>
Jul/09/2022 09:17:45 dns,packet
<www.tiktok.com.edgesuite.net.:CNAME:8630=a2047.r.akamai.net.>
Jul/09/2022 09:17:45 dns,packet <a2047.r.akamai.net.:A:17=114.125.211.137>
Jul/09/2022 09:17:45 dns,packet <a2047.r.akamai.net.:A:17=114.125.211.171>
Jul/09/2022 09:17:45 dns,packet <a2047.r.akamai.net.:A:17=114.125.211.163>
Jul/09/2022 09:17:45 dns,packet <a2047.r.akamai.net.:A:17=114.125.211.168>
Jul/09/2022 09:17:45 dns,packet <a2047.r.akamai.net.:A:17=114.125.211.138>
Jul/09/2022 09:17:45 dns,packet <a2047.r.akamai.net.:A:17=114.125.211.139>
Jul/09/2022 09:17:45 dns,packet <a2047.r.akamai.net.:A:17=114.125.211.170>
Jul/09/2022 09:17:45 dns,packet <a2047.r.akamai.net.:A:17=114.125.211.136>
Jul/09/2022 09:17:45 dns,packet <a2047.r.akamai.net.:A:17=114.125.211.169>
Jul/09/2022 09:17:45 dns done query: #27651 www.tiktok.com. 114.125.211.170

You might also like