Page 1
TimestampRequest PacketInodeMethodURLContent Type
2007-12-16 23:24:22

9658

In|S1945/1946|H411:11

External IP Address
GET

http://ekiga.net/ip/

text/html; charset=UTF-8

2007-12-16 22:41:47

2635

In|S1709/1710|H1061:8339|c0|G1

Search on overseas credit cards
GET

http://www.google.com/search?q=overseas+credit+card+payments&start=0&ie=utf-8&oe
=utf-8&client=firefox-a&rls=org.mozilla:en-US:official

text/html; charset=UTF-8

2007-12-16 22:41:31

NoneIz|o0|Z907423:1717268|o2199552:8315|G1

Google credit card search
GET

http://www.google.com/search?q=overseas+credit+card+payments&start=0&ie=utf-8&oe
=utf-8&client=firefox-a&rls=org.mozilla:en-US:official

text/html; charset=UTF-8

2007-12-09 02:49:40

NoneIz|o0|Z907423:1717268|o1871872:14069|G1

Flight Itenary
GET

http://travel.travelocity.com/flights/SelectOutboundLegAction.do?leg=50&targetLe
gIndex=0&breadcrumbStart=1&sortOrder=TOTAL_FARE_ASCENDING&recordNo=19&dispNewTim
eStamp=&pathIndicatorCode=KIA&flightPath=TF

text/html;charset=UTF-8

2007-12-09 02:49:22

NoneIz|o0|Z684087:16607|G1

Selecting flight to San Jose
GET

http://travel.travelocity.com/flights/AirSearch.do?SEQ=11971866078151192007

text/html;charset=UTF-8

2007-12-09 02:48:59

NoneIz|o0|Z907423:1717268|o1806336:8235|G1

Search on travel to costa rica
GET

http://travel.travelocity.com/flights/ResolveAirportAction.do;jsessionid=5244E9C
4701E69F054D28CB654946F3C.p0239?SEQ=11971865900141192007

text/html;charset=UTF-8

2007-12-09 02:42:05

NoneIz|o0|Z4081003:274495|o580608:586|G1

xorg vulnerability
GET

http://milw0rm.com/exploits/1596

text/html; charset=utf-8

2007-12-09 02:32:02

NoneIz|o0|Z3311141:528179|o460800:1863|G1

Exploit
GET

http://milw0rm.com/exploits/2013

text/html; charset=utf-8

2007-12-09 02:30:12

NoneIz|o0|Z3311141:528179|o475136:2671|G1

Exploit
GET

http://milw0rm.com/exploits/2492

text/html; charset=utf-8

2007-12-09 02:27:57

NoneIz|o0|Z4933357:24194|G1

Vulnerability search
GET

http://milw0rm.com/platforms/linux

text/html; charset=utf-8

2007-12-09 02:25:14

NoneIz|o0|Z4081003:274495|o575488:1003|G1

Exploit
GET

http://milw0rm.com/exploits/4028

text/html; charset=utf-8

2007-12-09 02:24:21

NoneIz|o0|Z3311141:528179|o448512:1071|G1

Suspicious searches
GET

http://milw0rm.com/metasploit/68

text/html; charset=utf-8

2007-12-09 02:23:43

NoneIz|o0|Z907423:1717268|o1683456:4464

Exploit
GET

http://framework.metasploit.com/exploits/view/?refname=multi:svn:svnserve_date

text/html; charset=utf-8

2007-12-09 01:29:33

NoneIz|o0|Z3311141:528179|o434176:2830

Metasploit research
GET

http://framework.metasploit.com/

text/html; charset=utf-8

2007-12-09 01:29:25

NoneIz|o0|Z3311141:528179|o430080:2848

Metasploit research
GET

http://metasploit.org/research.html

text/html; charset=ISO-8859-1

2007-12-09 01:29:20

NoneIz|o0|Z3311141:528179|o425984:3862

Metasploit research
GET

http://metasploit.org/opcode_database.html

text/html; charset=ISO-8859-1

2007-12-09 01:28:31

NoneIz|o0|Z2929078:18505

Metasploit research
GET

http://metasploit.org/

text/html; charset=ISO-8859-1

2007-12-09 01:26:52

NoneIz|o0|Z4355625:45975|G1

Vulnerability search
GET

http://209.85.135.104/search?q=cache:PcX9iRnuEVgJ:archives.neohapsis.com/archive
s/cve/2002-q1/0001.html+privilege+elevation+2.6.19&hl=ar&ct=clnk&cd=9&gl=qa&clie
nt=firefox-a

text/html; charset=US-ASCII

2007-12-09 01:22:41

NoneIz|o0|Z907423:1717268|o1593344:13229

Exploits
GET

http://www.isec.pl/vulnerabilities/isec-0023-coredump.txt

text/plain

2007-12-09 01:21:27

NoneIz|o0|Z907423:1717268|o1560576:15260

Metasploit research
GET

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-1263

text/html; charset=ISO-8859-1

2007-12-09 01:21:08

NoneIz|o0|Z907423:1717268|o1536000:6710|G1

Suspicious searches
GET

http://www.google.com.qa/search?q=CAN-2005-1263&start=0&ie=utf-8&oe=utf-8&client
=firefox-a&rls=org.mozilla:en-US:official

text/html; charset=UTF-8

2007-12-09 01:19:31

NoneIz|o0|Z907423:1717268|o1519616:4451|G1

Exploit research
GET

http://www.derkeiler.com/Newsgroups/comp.os.linux.security/2005-04/0316.html

text/html

2007-12-09 01:18:31

NoneIz|o0|Z907423:1717268|o1511424:6197|G1

Exploit research
GET

http://www.google.com.qa/search?q=privilege+elevation+2.6.19&start=0&ie=utf-8&oe
=utf-8&client=firefox-a&rls=org.mozilla:en-US:official

text/html; charset=UTF-8

2007-12-09 01:09:22

NoneIz|o0|Z907423:1717268|o1241088:8108|G1

Travel search for maldive
GET

http://www.google.com.qa/search?q=maldives&start=0&ie=utf-8&oe=utf-8&client=fire
fox-a&rls=org.mozilla:en-US:official

text/html; charset=UTF-8

2007-12-09 01:08:10

NoneIz|o0|Z3195983:10503

Legal search
GET

http://travel.state.gov/law/info/judicial/judicial_690.html

text/html

2007-12-09 01:07:45

NoneIz|o0|Z3846589:4959

Research living in costa rica
GET

http://www.escapeartist.com/expatriate/Overseas_Judicial_Information.html

text/html

2007-12-09 01:06:33

NoneIz|o0|Z4725138:9128

Research living in costa rica
GET

http://www.escapeartist.com/oque/living.html

text/html

2007-12-09 01:06:14

NoneIz|o0|Z3982836:9109

Suspicious searches
GET

http://sanjose.usembassy.gov/exttreatyeng.html

text/html

2007-12-09 01:06:11

NoneIz|o0|Z907423:1717268|o1069056:7386|G1

Suspicious searches
GET

http://www.google.com.qa/search?q=extradition+costa+rica&start=0&ie=utf-8&oe=utf
-8&client=firefox-a&rls=org.mozilla:en-US:official

text/html; charset=UTF-8

2007-12-09 01:05:00

NoneIz|o0|Z5455099:16151

Research arrests and extraditions
GET

http://forum.freeadvice.com/showthread.php?referrerid=246160&t=379860

text/html; charset=ISO-8859-1

2007-12-09 01:03:48

NoneIz|o0|Z4973403:14925

Research arrests and extraditions
GET

http://forum.freeadvice.com/showthread.php?t=206976

text/html; charset=ISO-8859-1

2007-12-09 01:03:30

NoneIz|o0|Z907423:1717268|o995328:6734|G1

Research arrests and extraditions
GET

http://www.google.com.qa/search?q=non-                                          
extradition+countries&start=0&ie=utf-8&oe=utf-8&client=firefox-a&rls=org.mozilla
:en-US:official

text/html; charset=UTF-8

2007-12-09 00:58:39

NoneIz|o0|Z907423:1717268|o987136:7261|G1

Research arrests and extraditions
GET

http://www.google.com.qa/search?q=panama+extradition&start=0&ie=utf-8&oe=utf-8&c
lient=firefox-a&rls=org.mozilla:en-US:official

text/html; charset=UTF-8

2007-12-09 00:54:20

NoneIz|o0|Z907423:1717268|o872448:16293

Legal search
GET

http://www.noblebank.pl/noble/index.jsp?place=Menu02&news_cat_id=84&layout=extra
&page=contactForm&gclid=CKmcwPrBmpACFQrAaAod5wh28A&tduid=9921e05cd3ee450de6cc572
22348bf99&affId=1301876&frdt=yes

text/html;charset=iso-8859-2

2007-12-09 00:53:40

NoneIz|o0|Z907423:1717268|o856064:6850|G1

Google search on private banking
GET

http://www.google.com.qa/search?q=private+banking&start=0&ie=utf-8&oe=utf-8&clie
nt=firefox-a&rls=org.mozilla:en-US:official

text/html; charset=UTF-8

2007-12-09 00:51:38

NoneIz|o0|Z3311141:528179|o151552:1134|G1

Communication
GET

http://spreadsheets.google.com/femail?id=o17742632304305298979.69049811624514571
19.08953231559355367409.3362999466403390403&hl=en&to=%20%3Cfaatali%40hotmail.com
%3E&cc=

text/html; charset=utf-8

2007-12-08 03:46:37

NoneIz|o0|Z3311141:528179|o106496:3144|G1

Login to Gmail
GET

http://mail.google.com/mail/?ui=2&ik=d5424cfd94&view=cv&fs=1&tf=1&ver=2bb0v28ry8
9roby3bc16x8t2r

text/html; charset=UTF-8

2007-12-08 03:46:36

NoneIz|o0|Z3311141:528179|o102400:3135|G1

Login to Gmail
GET

http://mail.google.com/mail/?ui=2&ik=d5424cfd94&view=cw&fs=1&tf=1&ver=2bb0v28ry8
9roby3bc16x8t2r

text/html; charset=UTF-8

2007-12-08 03:46:03

NoneIz|o0|Z3311141:528179|o77824:2378|G1

Signed up for gmail
GET

http://mail.google.com/mail/help/intro.html

text/html

2007-12-08 03:43:22

NoneIz|o0|Z907423:1717268|o200704:12227|G1

Setting up gmail account
GET

http://docs.google.com/DocAction?action=settings&hl=en

text/html; charset=UTF-8