Sei sulla pagina 1di 51

Overview

URL

chase.com

IP

159.53.84.126

ASN

AS7743 JPMorgan Chase & Co.

Location

United States

Report
completed

2014-11-09 01:32:40 CET

Status

Report complete.

urlQuery Alerts

No alerts detected

Settings
UserAgent

Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.13) Gecko/20101203 Firefox/3.6.13

Referer
Pool
Access Level

public

Intrusion Detection Systems


Snort /w
No alerts detected
Sourcefire VRT

Suricata /w
Emerging
Threats Pro

Tim
est
am
p

S
De
Sou
ev
stin
rce
eri
atio
IP
ty
n IP

201
4-11
-09
01:3
2:24

urlQ
uery 173.
Clie 194.
nt 112.
217

SURICATA TLS
invalid handshake
message

urlQ
173. uery
194. Clie
112. nt
217

SURICATA TLS
invalid handshake
message

201
4-11
-09
01:3
2:24

Blacklists
Fortinet's Web
Filter /
fortiguard.com

No alerts detected

DNS-BH /
malwaredomai No alerts detected
ns.com
PhishTank /
phishtank.com

No alerts detected

Spamhaus
DBL /
spamhaus.org

No alerts detected

Files Captured
Suricata IDS

No files captured

Alert

Recent reports on same IP/ASN/Domain


Last 6 reports on ASN: AS7743 JPMorgan Chase & Co.
Date

UQ /
IDS /
BL

URL

IP

2014-110-006
0
13:01:51

chase.com

159.53.4
2.11

2014-110-005
0
19:54:56

www2.bankone.com/presents/preview/js/dates.js

159.53.9
6.78

2014-110-005
0
15:54:22

www2.bankone.com/presents/preview/js/dates.js

159.53.6
0.93

2014-100-030
0
15:42:53

www2.bankone.com

159.53.6
4.61

2014-100-128
0
14:24:45

gov1.paymentnet.com/

159.53.3
4.170

2014-100-017
0
20:33:09

www.paymentnet.jpmorgan.com/

159.53.7
6.173

Last 1 reports on domain: chase.com


Date

UQ /
IDS /
BL

2014-110-006
0
13:01:51

URL

IP

chase.com

159.53.4
2.11

JavaScript
Executed Scripts (62)
Executed Evals (27)
#1 JavaScript::Eval (size: 728, repeated: 1)
require(['content/components/ads/placement'], function(Slot) {
var defaultContent = "/content/chasecom/en/snippets/ads/hero_failover";

if (defaultContent.indexOf(".html") == -1 && defaultContent.indexOf(".htm") == -1) {


defaultContent = defaultContent + ".html";
}
var data = {
pid: "hero",
size: "cig-hero-marquee",
defaultTreatement: 'DefaultAd',
defaultAdURL: defaultContent,
defaultView: 'spinner',
defaultAdId: 'homepage/hero/failover'
}
var adSlot = new Slot(data);
})

#2 JavaScript::Eval (size: 276, repeated: 1)


require(['jquery', 'site/components/login', 'content/uicc/accessible'], function($, ChaseLogin, Accessible) {
var a = new ChaseLogin('.chase-home-login .login-unknown-user', 'true', 'false', '', 'false');
a.init('RBGLogon');
});

#3 JavaScript::Eval (size: 124, repeated: 1)


require(['content/browser/dynamic'], function(Dynamic) {
Dynamic.broadcastAnchorLinks('loginBtn');
});

#4 JavaScript::Eval (size: 30, repeated: 1)


CHASE.TagManager.bluekai("01")

#5 JavaScript::Eval (size: 16, repeated: 1)


clientVars.APPID

#6 JavaScript::Eval (size: 14, repeated: 1)


clientVars.CAT

#7 JavaScript::Eval (size: 15, repeated: 2)


clientVars.CELL

#8 JavaScript::Eval (size: 14, repeated: 1)


clientVars.MSC

#9 JavaScript::Eval (size: 15, repeated: 2)


clientVars.SPID

#10 JavaScript::Eval (size: 21, repeated: 1)


clientVars.cig_app_id

#11 JavaScript::Eval (size: 20, repeated: 1)


clientVars.page_code

#12 JavaScript::Eval (size: 22, repeated: 1)


clientVars.persona.AOC

#13 JavaScript::Eval (size: 22, repeated: 3)


clientVars.persona.ECI

#14 JavaScript::Eval (size: 23, repeated: 1)


clientVars.persona.GUID

#15 JavaScript::Eval (size: 22, repeated: 1)


clientVars.persona.RPC

#16 JavaScript::Eval (size: 24, repeated: 1)


clientVars.persona.known

#17 JavaScript::Eval (size: 27, repeated: 1)


clientVars.persona.lastSent

#18 JavaScript::Eval (size: 29, repeated: 1)


clientVars.persona.lastUpdate

#19 JavaScript::Eval (size: 23, repeated: 1)


clientVars.persona.pfid

#20 JavaScript::Eval (size: 26, repeated: 1)


clientVars.persona.segment

#21 JavaScript::Eval (size: 30, repeated: 1)


clientVars.persona.source_code

#22 JavaScript::Eval (size: 38, repeated: 1)


clientVars.persona.source_code_applied

#23 JavaScript::Eval (size: 22, repeated: 1)


clientVars.persona.zip

#24 JavaScript::Eval (size: 15, repeated: 1)


clientVars.pvid

#25 JavaScript::Eval (size: 17, repeated: 4)


clientVars.random

#26 JavaScript::Eval (size: 15, repeated: 2)


clientVars.v1st

#27 JavaScript::Eval (size: 176, repeated: 1)


decodeURIComponent(TM.clientVars.referrer) === '' || decodeURIComponent(TM.clientVars.referrer) ===
'null' || typeof(decodeURIComponent(TM.clientVars.referrer)) === 'undefined'

Executed Writes (0)

HTTP Transactions (96)

Request

Response

GET / HTTP/1.1
Host: chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
POST / HTTP/1.1
Host: sb.symcd.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8

159.53.42.11
HTTP/1.0 301 Moved Permanently
HTTP/1.0 301 Moved Permanently
Location: https://www.chase.com/
Server: BigIP
Content-Length: 0
Connection: keep-alive

23.46.123.27
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Server: nginx/1.4.7
Content-Length: 1806
Content-Transfer-Encoding: binary
Cache-Control: max-age=510307, public,
no-transform, must-revalidate
Last-Modified: Fri, 7 Nov 2014 22:17:03 GMT

Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 115
Content-Type: application/ocsp-request

Expires: Fri, 14 Nov 2014 22:17:03 GMT


Date: Sun, 09 Nov 2014 00:31:56 GMT
Connection: keep-alive

POST / HTTP/1.1
Host: evsecure-ocsp.verisign.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 115
Content-Type: application/ocsp-request
GET
/c/101214/apps/chase/clientlibs/foundation/s
cripts/Reporting.js HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET / HTTP/1.1

23.46.123.27
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Server: nginx/1.4.7
Content-Length: 1890
Content-Transfer-Encoding: binary
Cache-Control: max-age=533855, public,
no-transform, must-revalidate
Last-Modified: Sat, 8 Nov 2014 04:47:31
GMT
Expires: Sat, 15 Nov 2014 04:47:31 GMT
Date: Sun, 09 Nov 2014 00:31:57 GMT
Connection: keep-alive

159.53.84.126
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:31:30 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:17:25
GMT
Accept-Ranges: bytes
Content-Length: 12855
Cache-Control:
max-age=31536000,s-maxage=31536000
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 28
159.53.84.126

Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
GET
/c/101214/apps/chase/clientlibs/foundation/j
pmcjs/js/jpmc.js HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/c/101214/etc/designs/chasecomhomepage/
clientlibs.css HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: text/css,*/*;q=0.1
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115

HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Date: Sun, 09 Nov 2014 00:31:53 GMT
Server: Apache
Last-Modified: Fri, 07 Nov 2014 03:16:33
GMT
Accept-Ranges: bytes
Content-Length: 26576
Cache-Control:
max-age=300,s-maxage=300
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 4
159.53.84.126
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:31:30 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:14:04
GMT
Accept-Ranges: bytes
Content-Length: 136827
Cache-Control:
max-age=31536000,s-maxage=31536000
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 27

159.53.84.126
HTTP/1.1 200 OK
Content-Type: text/css
Date: Sun, 09 Nov 2014 00:29:17 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:18:04
GMT
Accept-Ranges: bytes
Content-Length: 73392
Cache-Control:
max-age=31536000,s-maxage=31536000
Access-Control-Allow-Origin: *
Connection: Keep-Alive

Connection: keep-alive
Referer: https://www.chase.com/

Content-Encoding: gzip
Age: 161

GET
/etc/designs/chasecom/images/favicon.ico
HTTP/1.1
Host: www.chase.com

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/x-icon
Date: Sun, 09 Nov 2014 00:31:09 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:18:18
GMT
Accept-Ranges: bytes
Content-Length: 254
Cache-Control:
max-age=300,s-maxage=300
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 52

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
GET
/c/101214/apps/chase/clientlibs/foundation/p
ublishoptimized/homepage-po-min.js
HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/c/101214/apps/chase/clientlibs/foundation/j
pmcjs/js/json.js HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13

159.53.84.126
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:30:53 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:14:50
GMT
Accept-Ranges: bytes
Content-Length: 62344
Cache-Control:
max-age=31536000,s-maxage=31536000
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 68

159.53.84.126
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:31:17 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:18:13
GMT
Accept-Ranges: bytes

Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/etc/designs/chasecomhomepage/images/h
omepage_background_1px.jpg HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/c/101214/apps/chase/clientlibs/foundation/j
pmcjs/js/jpmc/util/string/trimLeft.js HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

Content-Length: 107
Cache-Control:
max-age=31536000,s-maxage=31536000
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 53

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/jpeg
Date: Sun, 09 Nov 2014 00:31:30 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:18:15
GMT
Accept-Ranges: bytes
Content-Length: 1214
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 38

159.53.84.126
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:30:55 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:16:13
GMT
Accept-Ranges: bytes
Content-Length: 186
Cache-Control:
max-age=31536000,s-maxage=31536000
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 74

GET
/etc/designs/chasecom/images/swat-sprite.
png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/content/dam/chasecom/en/common/image
s/rumba_sw-logo-section.png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET /etc/chase/appsconfig/clientconfig.js
HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:32:00 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:17:41
GMT
Accept-Ranges: bytes
Content-Length: 14562
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 9

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:30:39 GMT
Server: Apache
Last-Modified: Sun, 21 Jul 2013 06:24:55
GMT
Accept-Ranges: bytes
Content-Length: 2462
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 90

159.53.84.126
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:31:58 GMT
Server: Apache
Last-Modified: Thu, 06 Nov 2014 19:48:29
GMT
Accept-Ranges: bytes
Content-Length: 1976
Cache-Control:
max-age=300,s-maxage=300

Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

GET
/apps/chase/clientlibs/foundation/contentjs/js
/content/browser/history.js HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/etc/designs/chasecomhomepage/images/s
earch_button.png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/content/chasecom/en/snippets/common/m
odular/mega-menu-unmatched/_jcr_content/
par/layout/cell-0-0/multitask/image.img.jpg/1
351397388926.jpg HTTP/1.1
Host: www.chase.com

Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 11
159.53.84.126
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:31:31 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:17:41
GMT
Accept-Ranges: bytes
Content-Length: 1182
Cache-Control:
max-age=300,s-maxage=300
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 39

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:30:44 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:17:30
GMT
Accept-Ranges: bytes
Content-Length: 1705
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 85

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/jpeg
Date: Sun, 09 Nov 2014 00:31:30 GMT
Server: Apache

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/content/chasecom/en/snippets/common/m
odular/mega-menu-partner/_jcr_content/par/
layout/cell-0-0/multitask/image.img.jpg/1348
985611510.jpg HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/content/chasecom/en/snippets/common/m
odular/mega-menu-commitment/_jcr_conte
nt/par/layout/cell-0-0/multitask/image.img.jpg
/1400707107000.jpg HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate

Last-Modified: Sun, 11 Nov 2012 09:42:27


GMT
Accept-Ranges: bytes
Content-Length: 9491
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 40

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/jpeg
Date: Sun, 09 Nov 2014 00:30:39 GMT
Server: Apache
Last-Modified: Sun, 11 Nov 2012 09:37:43
GMT
Accept-Ranges: bytes
Content-Length: 8219
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 90

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/jpeg
Date: Sun, 09 Nov 2014 00:31:34 GMT
Server: Apache
Last-Modified: Wed, 21 May 2014 21:43:30
GMT
Accept-Ranges: bytes
Content-Length: 5057
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive

Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

Age: 36

POST / HTTP/1.1
Host: gtssldv-ocsp.geotrust.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 102
Content-Type: application/ocsp-request

23.46.123.27
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Server: nginx/1.4.7
Content-Length: 1398
Content-Transfer-Encoding: binary
Cache-Control: max-age=547440, public,
no-transform, must-revalidate
Last-Modified: Sat, 8 Nov 2014 08:32:02
GMT
Expires: Sat, 15 Nov 2014 08:32:02 GMT
Date: Sun, 09 Nov 2014 00:32:10 GMT
Connection: keep-alive

POST / HTTP/1.1
Host: se.symcd.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 115
Content-Type: application/ocsp-request
GET
/content/chasecom/en/snippets/common/m
odular/mega-menu-global-finance/_jcr_cont

23.46.123.27
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Server: nginx/1.4.7
Content-Length: 1744
Content-Transfer-Encoding: binary
Cache-Control: max-age=590137, public,
no-transform, must-revalidate
Last-Modified: Sat, 8 Nov 2014 20:27:47
GMT
Expires: Sat, 15 Nov 2014 20:27:47 GMT
Date: Sun, 09 Nov 2014 00:32:10 GMT
Connection: keep-alive

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png

ent/par/layout/cell-0-0/multitask/image.img.p
ng/1403026574817.png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/etc/designs/chasecom/images/EHL-Slice.p
ng HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/content/dam/chasecom/en/homepage/imag
es/ad-choices-logo-blue_lite.png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7

Date: Sun, 09 Nov 2014 00:30:40 GMT


Server: Apache
Last-Modified: Tue, 17 Jun 2014 17:47:48
GMT
Accept-Ranges: bytes
Content-Length: 12668
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 90

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:29:39 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:17:56
GMT
Accept-Ranges: bytes
Content-Length: 1295
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 150

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:31:16 GMT
Server: Apache
Last-Modified: Sun, 17 Nov 2013 13:55:13
GMT
Accept-Ranges: bytes
Content-Length: 1242
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *

Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

Connection: Keep-Alive
Age: 54

GET
/meta?_callback=jQuery1102039609524184
70458_1415493128873&_o=15629&_t=col_
uk_home&ssv_v1st=&ssv_pfid=&ssv_zip=&
ssv_cigseg=&ssv_locale=&ssv_random=10
&ssv_product=&ssv_userType=&ssvm_lids
=&_=1415493128874 HTTP/1.1
Host: s.xp1.ru4.com
GET
/meta?_callback=jQuery1102039609524184
70458_1415493128873&_o=15629&a
mp;_t=col_uk_home&ssv_v1st=&
ssv_pfid=&ssv_zip=&ssv_cigseg
=&ssv_locale=&ssv_random=10&
amp;ssv_product=&ssv_userType=&a
mp;ssvm_lids=&_=1415493128874
HTTP/1.1

199.38.164.160
HTTP/1.1 200 OK
Content-Type: text/html
Server: Sun-Java-System-Web-Server/7.0
Date: Sun, 09 Nov 2014 00:32:10 GMT
P3p: policyref="/w3c/p3p.xml",
CP="NON DSP COR PSAa OUR STP
UNI"
Expires: Mon, 01-Jan-2010 12:00:00 GMT
Pragma: no-cache
Set-Cookie: X1ID=AH-00000001048408553;
domain=.ru4.com; path=/; expires=Sat,
08-May-2016 19:32:10 GMT
TMP_X1ID=AH-00000001048408553;
domain=.ru4.com; path=/
SEQUI_JRNL=#A5013S0C5027S0C5326S0
C#R6883S1@4B90XS; domain=.ru4.com;
path=/; expires=Sat, 08-May-2016 19:32:10
GMT
51158508-B52889594=4|59269287|5289126
8|9|0|59267051|59266721|-1;
domain=.ru4.com; path=/
O15629=0@0@2305843009213693952@0;
domain=.ru4.com; path=/; expires=Sat,
08-May-2016 19:32:10 GMT
C51158508=0@32; domain=.ru4.com;
path=/; expires=Sun, 01-May-2016 00:00:00
GMT PA15629=; domain=.ru4.com; path=/;
expires=Mon, 01-Jan-2010 12:00:00 GMT
Content-Length: 2925

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/content/dam/chasecom/en/socialmedia/ima
ges/social_icon_twitter_24x24.png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:31:34 GMT
Server: Apache
Last-Modified: Sun, 07 Apr 2013 22:33:59
GMT
Accept-Ranges: bytes
Content-Length: 1991

Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 36

GET /commonui/stylesheets/jpui.css
HTTP/1.1
Host: resources.chase.com

159.53.85.125
HTTP/1.1 200 OK
Content-Type: text/css
Cache-Control: max-age=14400
Last-Modified: Thu, 30 Oct 2014 22:43:37
GMT
Accept-Ranges: bytes
Etag: "80b26ef192f4cf1:0"
WAMI: 324
Access-Control-Allow-Origin: *
Date: Sun, 09 Nov 2014 00:31:51 GMT
Content-Length: 1005
Connection: Keep-Alive
Content-Encoding: gzip
Age: 20

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: text/css,*/*;q=0.1
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/c/101214/apps/chase/clientlibs/foundation/j
pmcjs/js/jqueryui-1.10.2.js HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/commonui/javascripts/unsecurebrowser.js
HTTP/1.1
Host: resources.chase.com

159.53.84.126
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:30:55 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:16:13
GMT
Accept-Ranges: bytes
Content-Length: 77773
Cache-Control:
max-age=31536000,s-maxage=31536000
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 74

159.53.85.125
HTTP/1.1 200 OK
Content-Type: application/x-javascript
Cache-Control: max-age=14400

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/content/chasecom/en/snippets/common/m
odular/mega-menu-atm/_jcr_content/par/lay
out/cell-0-0/multitask/image.img.jpg/1348996
198358.jpg HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/content/dam/chasecom/en/socialmedia/ima
ges/social_icon_facebook.png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive

Last-Modified: Thu, 30 Oct 2014 22:43:57


GMT
Accept-Ranges: bytes
Etag: "80745afd92f4cf1:0"
WAMI: 318
Access-Control-Allow-Origin: *
Date: Sun, 09 Nov 2014 00:31:36 GMT
Content-Length: 6362
Connection: Keep-Alive
Content-Encoding: gzip
Age: 33

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/jpeg
Date: Sun, 09 Nov 2014 00:31:16 GMT
Server: Apache
Last-Modified: Sun, 30 Sep 2012 09:12:47
GMT
Accept-Ranges: bytes
Content-Length: 4139
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 54

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:29:18 GMT
Server: Apache
Last-Modified: Tue, 24 Jun 2014 17:20:04
GMT
Accept-Ranges: bytes
Content-Length: 1678
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 172

Referer: https://www.chase.com/
GET
/content/dam/chasecom/en/socialmedia/ima
ges/social_icon_youtube_24x24.png
HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/etc/designs/chasecom/images/swat-bg-ftrmiddle.png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://www.chase.com/c/101214/etc/design
s/chasecomhomepage/clientlibs.css
GET
/etc/designs/chasecom/images/swat-bg-ftr-t
op.png HTTP/1.1
Host: www.chase.com

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:29:18 GMT
Server: Apache
Last-Modified: Sun, 07 Apr 2013 22:34:40
GMT
Accept-Ranges: bytes
Content-Length: 2023
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 172

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:31:58 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:18:20
GMT
Accept-Ranges: bytes
Content-Length: 242
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 12

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:31:37 GMT
Server: Apache

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://www.chase.com/c/101214/etc/design
s/chasecomhomepage/clientlibs.css
GET
/etc/designs/chasecom/images/rumba_swnav-bg.png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://www.chase.com/c/101214/etc/design
s/chasecomhomepage/clientlibs.css
GET
/etc/designs/chasecom/images/swat-bg-ftrbottom.png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7

Last-Modified: Sun, 12 Oct 2014 10:16:12


GMT
Accept-Ranges: bytes
Content-Length: 410
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 34

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:30:54 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:18:20
GMT
Accept-Ranges: bytes
Content-Length: 285
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 76

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:31:37 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:18:15
GMT
Accept-Ranges: bytes
Content-Length: 615
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *

Keep-Alive: 115
Connection: keep-alive
Referer:
https://www.chase.com/c/101214/etc/design
s/chasecomhomepage/clientlibs.css
GET
/content/dam/chasecom/en/ads/retail/31698
6_triplet.png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

Connection: Keep-Alive
Age: 34

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:22:58 GMT
Server: Apache
Last-Modified: Mon, 02 Jun 2014 17:24:34
GMT
Accept-Ranges: bytes
Content-Length: 21814
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 554

POST / HTTP/1.1
Host: sb.symcd.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 115
Content-Type: application/ocsp-request
GET
/etc/designs/chasecom/images/login_unkno
wn.png HTTP/1.1
Host: www.chase.com

23.46.123.27
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Server: nginx/1.4.7
Content-Length: 1806
Content-Transfer-Encoding: binary
Cache-Control: max-age=518725, public,
no-transform, must-revalidate
Last-Modified: Sat, 8 Nov 2014 00:37:38
GMT
Expires: Sat, 15 Nov 2014 00:37:38 GMT
Date: Sun, 09 Nov 2014 00:32:13 GMT
Connection: keep-alive

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:31:17 GMT

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://www.chase.com/c/101214/etc/design
s/chasecomhomepage/clientlibs.css
GET
/content/dam/chasecom/en/ads/card-servic
es2/partner/325192_SWA_300x250.jpg
HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/content/dam/chasecom/en/ads/retail/TextB
anking_300x250_triplet.png HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7

Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:18:05
GMT
Accept-Ranges: bytes
Content-Length: 4873
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 54

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/jpeg
Date: Sun, 09 Nov 2014 00:23:48 GMT
Server: Apache
Last-Modified: Fri, 31 Oct 2014 12:45:53
GMT
Accept-Ranges: bytes
Content-Length: 35958
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 503

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/png
Date: Sun, 09 Nov 2014 00:09:05 GMT
Server: Apache
Last-Modified: Fri, 14 Mar 2014 20:41:53
GMT
Accept-Ranges: bytes
Content-Length: 11330
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *

Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/etc/designs/chasecom/images/loading.gif
HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/etc/designs/chasecom/images/loader-grayfaster-40x40_v5.gif HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET /auth/alogin.jsp HTTP/1.1
Host: mfasa.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13

Connection: Keep-Alive
Age: 1387

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/gif
Date: Sun, 09 Nov 2014 00:31:58 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:17:07
GMT
Accept-Ranges: bytes
Content-Length: 1924
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 13

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/gif
Date: Sun, 09 Nov 2014 00:30:38 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:18:20
GMT
Accept-Ranges: bytes
Content-Length: 16101
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 94

159.53.62.96
HTTP/1.1 200 OK
Content-Type: text/html;charset=ISO-8859-1
Date: Sun, 09 Nov 2014 00:32:13 GMT
Access-Control-Allow-Methods: POST,
GET, PUT, OPTIONS, PATCH, DELETE
Access-Control-Allow-Credentials: true

Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

GET
/content/chasecom/en/snippets/ads/hero_fai
lover/_jcr_content/adcreationcontainer/par.ht
ml HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: text/html, */*; q=0.01
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
X-Requested-With: XMLHttpRequest
Referer: https://www.chase.com/
GET /auth/js/json.js HTTP/1.1
Host: mfasa.chase.com

Access-Control-Allow-Headers:
X-Accept-Charset,X-Accept,Content-Type,A
ccept-Encoding,Content-Language
Vary: Accept-Encoding
X-Powered-By: Servlet/3.0
Expires: Thu, 01 Dec 1994 16:00:00 GMT
Cache-Control: no-cache="set-cookie,
set-cookie2"
P3p: CP="Chase does not have a P3P
policy. Learn why here:
https://m.chase.com/#onlineprivacypolicy&q
uot;
Content-Language: en-US
Transfer-Encoding: chunked
Connection: Keep-Alive
Content-Encoding: gzip
Set-Cookie:
authdccookie=AUTHDC01WEB04; path=/;
domain=mfasa.chase.com; expires=Sun,
09-Nov-2014 00:45:13 GMT
JSESSIONID=0000f8T8ZEpHgeXEtfDwv3k
O8jI:16puvcu0r; Path=/; HttpOnly

159.53.84.126
HTTP/1.1 200 OK
Content-Type: text/html; charset=UTF-8
Date: Sun, 09 Nov 2014 00:29:44 GMT
Server: Apache
Last-Modified: Sun, 09 Nov 2014 00:06:27
GMT
Accept-Ranges: bytes
Content-Length: 418
Cache-Control:
max-age=300,s-maxage=300
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 150

159.53.62.96
HTTP/1.1 200 OK
Content-Type: application/javascript

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://mfasa.chase.com/auth/alogin.jsp
Cookie: authdccookie=AUTHDC01WEB04;
JSESSIONID=0000f8T8ZEpHgeXEtfDwv3k
O8jI:16puvcu0r

GET
/content/chasecom/en/snippets/ads/hero_fai
lover/_jcr_content/adcreationcontainer/par/m
ultitask/image.img.jpg/1391011781953.jpg
HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

Date: Sun, 09 Nov 2014 00:32:14 GMT


Access-Control-Allow-Methods: POST,
GET, PUT, OPTIONS, PATCH, DELETE
Access-Control-Allow-Credentials: true
Access-Control-Allow-Headers:
X-Accept-Charset,X-Accept,Content-Type,A
ccept-Encoding,Content-Language
Vary: Accept-Encoding
X-Powered-By: Servlet/3.0
Last-Modified: Wed, 24 Apr 2013 20:33:02
GMT
P3p: CP="Chase does not have a P3P
policy. Learn why here:
https://m.chase.com/#onlineprivacypolicy&q
uot;
Cache-Control:
max-age=86400,s-maxage=1800
Content-Language: en-US
Transfer-Encoding: chunked
Connection: Keep-Alive
Content-Encoding: gzip
Set-Cookie:
authdccookie=AUTHDC01WEB04; path=/;
domain=mfasa.chase.com; expires=Sun,
09-Nov-2014 00:45:14 GMT

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/jpeg
Date: Sun, 09 Nov 2014 00:14:03 GMT
Server: Apache
Last-Modified: Tue, 21 Oct 2014 19:24:05
GMT
Accept-Ranges: bytes
Content-Length: 44401
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 1091

GET
/content/dam/chasecom/en/ads/card-servic
es2/multi-card/38228_ApplePay_Hero_launc
h10-16_v2.jpg HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

GET /auth/js/mfp.js HTTP/1.1


Host: mfasa.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://mfasa.chase.com/auth/alogin.jsp
Cookie: authdccookie=AUTHDC01WEB04;
JSESSIONID=0000f8T8ZEpHgeXEtfDwv3k
O8jI:16puvcu0r

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/jpeg
Date: Sun, 09 Nov 2014 00:13:56 GMT
Server: Apache
Last-Modified: Tue, 28 Oct 2014 17:29:20
GMT
Accept-Ranges: bytes
Content-Length: 109057
Cache-Control:
max-age=1800,s-maxage=1800
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Age: 1097

159.53.62.96
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:32:15 GMT
Access-Control-Allow-Methods: POST,
GET, PUT, OPTIONS, PATCH, DELETE
Access-Control-Allow-Credentials: true
Access-Control-Allow-Headers:
X-Accept-Charset,X-Accept,Content-Type,A
ccept-Encoding,Content-Language
Vary: Accept-Encoding
X-Powered-By: Servlet/3.0
Last-Modified: Wed, 24 Apr 2013 20:33:02
GMT
P3p: CP="Chase does not have a P3P
policy. Learn why here:
https://m.chase.com/#onlineprivacypolicy&q
uot;
Cache-Control:
max-age=86400,s-maxage=1800
Content-Language: en-US
Transfer-Encoding: chunked
Connection: Keep-Alive
Content-Encoding: gzip
Set-Cookie:
authdccookie=AUTHDC01WEB04; path=/;
domain=mfasa.chase.com; expires=Sun,
09-Nov-2014 00:45:15 GMT

GET /auth/js/swfobject.js HTTP/1.1


Host: mfasa.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://mfasa.chase.com/auth/alogin.jsp
Cookie: authdccookie=AUTHDC01WEB04;
JSESSIONID=0000f8T8ZEpHgeXEtfDwv3k
O8jI:16puvcu0r

GET /auth/js/device.js HTTP/1.1


Host: mfasa.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://mfasa.chase.com/auth/alogin.jsp

159.53.62.96
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:32:15 GMT
Access-Control-Allow-Methods: POST,
GET, PUT, OPTIONS, PATCH, DELETE
Access-Control-Allow-Credentials: true
Access-Control-Allow-Headers:
X-Accept-Charset,X-Accept,Content-Type,A
ccept-Encoding,Content-Language
Vary: Accept-Encoding
X-Powered-By: Servlet/3.0
Last-Modified: Wed, 24 Apr 2013 20:33:02
GMT
P3p: CP="Chase does not have a P3P
policy. Learn why here:
https://m.chase.com/#onlineprivacypolicy&q
uot;
Cache-Control:
max-age=86400,s-maxage=1800
Content-Language: en-US
Transfer-Encoding: chunked
Connection: Keep-Alive
Content-Encoding: gzip
Set-Cookie:
authdccookie=AUTHDC01WEB04; path=/;
domain=mfasa.chase.com; expires=Sun,
09-Nov-2014 00:45:15 GMT
159.53.62.96
HTTP/1.1 200 OK
Content-Type: application/x-javascript
Date: Sun, 09 Nov 2014 00:32:15 GMT
Access-Control-Allow-Methods: POST,
GET, PUT, OPTIONS, PATCH, DELETE
Access-Control-Allow-Credentials: true
Access-Control-Allow-Headers:
X-Accept-Charset,X-Accept,Content-Type,A
ccept-Encoding,Content-Language
Vary: Accept-Encoding
X-Powered-By: Servlet/3.0
Last-Modified: Sun, 12 Oct 2014 08:24:14
GMT
P3p: CP="Chase does not have a P3P
policy. Learn why here:

Cookie: authdccookie=AUTHDC01WEB04;
JSESSIONID=0000f8T8ZEpHgeXEtfDwv3k
O8jI:16puvcu0r

GET /auth/js/plugin.min.js HTTP/1.1


Host: mfasa.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://mfasa.chase.com/auth/alogin.jsp
Cookie: authdccookie=AUTHDC01WEB04;
JSESSIONID=0000f8T8ZEpHgeXEtfDwv3k
O8jI:16puvcu0r

GET /auth/js/jquery-1.9.1.min.js HTTP/1.1


Host: mfasa.chase.com

https://m.chase.com/#onlineprivacypolicy&q
uot;
Cache-Control:
max-age=86400,s-maxage=1800
Content-Language: en-US
Transfer-Encoding: chunked
Connection: Keep-Alive
Content-Encoding: gzip
Set-Cookie:
authdccookie=AUTHDC01WEB04; path=/;
domain=mfasa.chase.com; expires=Sun,
09-Nov-2014 00:45:15 GMT
159.53.62.96
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:32:15 GMT
Access-Control-Allow-Methods: POST,
GET, PUT, OPTIONS, PATCH, DELETE
Access-Control-Allow-Credentials: true
Access-Control-Allow-Headers:
X-Accept-Charset,X-Accept,Content-Type,A
ccept-Encoding,Content-Language
Vary: Accept-Encoding
X-Powered-By: Servlet/3.0
Last-Modified: Wed, 24 Apr 2013 20:33:02
GMT
P3p: CP="Chase does not have a P3P
policy. Learn why here:
https://m.chase.com/#onlineprivacypolicy&q
uot;
Cache-Control:
max-age=86400,s-maxage=1800
Content-Language: en-US
Transfer-Encoding: chunked
Connection: Keep-Alive
Content-Encoding: gzip
Set-Cookie:
authdccookie=AUTHDC01WEB04; path=/;
domain=mfasa.chase.com; expires=Sun,
09-Nov-2014 00:45:15 GMT
159.53.62.96
HTTP/1.1 200 OK
Content-Type: application/javascript

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://mfasa.chase.com/auth/alogin.jsp
Cookie: authdccookie=AUTHDC01WEB04;
JSESSIONID=0000f8T8ZEpHgeXEtfDwv3k
O8jI:16puvcu0r

GET
/apps/chase/clientlibs/foundation/scripts/Per
sonalization.js HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/online/Home/images/wa01.gif?log=1&jp_hp
v=unknwn&wa_cb=1415493135754.979360

Date: Sun, 09 Nov 2014 00:32:14 GMT


Access-Control-Allow-Methods: POST,
GET, PUT, OPTIONS, PATCH, DELETE
Access-Control-Allow-Credentials: true
Access-Control-Allow-Headers:
X-Accept-Charset,X-Accept,Content-Type,A
ccept-Encoding,Content-Language
Vary: Accept-Encoding
X-Powered-By: Servlet/3.0
Last-Modified: Mon, 26 Aug 2013 21:34:40
GMT
P3p: CP="Chase does not have a P3P
policy. Learn why here:
https://m.chase.com/#onlineprivacypolicy&q
uot;
Cache-Control:
max-age=86400,s-maxage=1800
Content-Language: en-US
Transfer-Encoding: chunked
Connection: Keep-Alive
Content-Encoding: gzip
Set-Cookie:
authdccookie=AUTHDC01WEB04; path=/;
domain=mfasa.chase.com; expires=Sun,
09-Nov-2014 00:45:14 GMT
159.53.84.126
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:32:13 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:15:42
GMT
Accept-Ranges: bytes
Content-Length: 2918
Cache-Control:
max-age=300,s-maxage=300
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 2

159.53.84.126
HTTP/1.1 200 OK

&wa_uri=https%3A%2F%2Fwww.chase.co
m%2F&wa_pt=CHASE%20Bank%20-%20C
redit%20Cards%2C%20Mortgage%2C%20P
ersonal%20%26%20Commercial%20Bankin
g%2C%20Auto%20Loans%2C%20Investing
%2C%20Retirement%20Planning%2C%20
Checking%2C%20and%20Business%20Ba
nking&wa_sr=1176x885&wa_br=1176x775&
wa_fv=10.0 HTTP/1.1
Host: www.chase.com
GET
/online/Home/images/wa01.gif?log=1&j
p_hpv=unknwn&wa_cb=141549313575
4.979360&wa_uri=https%3A%2F%2Fw
ww.chase.com%2F&wa_pt=CHASE%
20Bank%20-%20Credit%20Cards%2C%20
Mortgage%2C%20Personal%20%26%20Co
mmercial%20Banking%2C%20Auto%20Loa
ns%2C%20Investing%2C%20Retirement%2
0Planning%2C%20Checking%2C%20and%
20Business%20Banking&wa_sr=1176x
885&wa_br=1176x775&wa_fv=10.
0 HTTP/1.1

Content-Type: image/gif
Date: Sun, 09 Nov 2014 00:32:15 GMT
Server: Apache
Cache-Control: no-cache=Set-Cookie
Expires: Thu, 01 Dec 1994 16:00:00 GMT
Last-Modified: Fri, 21 Mar 2014 02:03:12
GMT
Etag:
"4bd8061-2b-4f51449bb3800"
Accept-Ranges: bytes
Content-Length: 43
Connection: Keep-Alive
Set-Cookie: v1st=B475C0EA2A9D093C;
path=/; expires=Wed, 19 Feb 2020 14:28:00
GMT; domain=.chase.com

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/apps/services/tags/https/www.chase.com/
HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5

159.53.84.126
HTTP/1.1 200 OK
Content-Type: application/json;charset=utf-8
Date: Sun, 09 Nov 2014 00:32:15 GMT
Server: Apache
Cache-Control: no-store, no-cache,
must-revalidate,
max-age=300,s-maxage=300
Access-Control-Allow-Origin: *
Transfer-Encoding: chunked

Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/apps/chase/clientlibs/foundation/tagmanage
rextensions.js HTTP/1.1
Host: www.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET /auth/device.swf HTTP/1.1
Host: mfasa.chase.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://mfasa.chase.com/auth/alogin.jsp
Cookie: authdccookie=AUTHDC01WEB04;
JSESSIONID=0000f8T8ZEpHgeXEtfDwv3k
O8jI:16puvcu0r

Connection: Keep-Alive
Content-Encoding: gzip

159.53.84.126
HTTP/1.1 200 OK
Content-Type: application/javascript
Date: Sun, 09 Nov 2014 00:32:14 GMT
Server: Apache
Last-Modified: Sun, 12 Oct 2014 10:14:54
GMT
Accept-Ranges: bytes
Content-Length: 1612
Cache-Control:
max-age=300,s-maxage=300
Access-Control-Allow-Origin: *
Connection: Keep-Alive
Content-Encoding: gzip
Age: 1
159.53.62.96
HTTP/1.1 200 OK
Content-Type:
application/x-shockwave-flash
Date: Sun, 09 Nov 2014 00:32:18 GMT
Access-Control-Allow-Methods: POST,
GET, PUT, OPTIONS, PATCH, DELETE
Access-Control-Allow-Credentials: true
Access-Control-Allow-Headers:
X-Accept-Charset,X-Accept,Content-Type,A
ccept-Encoding,Content-Language
Vary: Accept-Encoding
X-Powered-By: Servlet/3.0
Last-Modified: Wed, 24 Apr 2013 20:33:02
GMT
Content-Length: 3152
P3p: CP="Chase does not have a P3P
policy. Learn why here:
https://m.chase.com/#onlineprivacypolicy&q
uot;

Cache-Control:
max-age=86400,s-maxage=1800
Content-Language: en-US
Connection: Keep-Alive
Set-Cookie:
authdccookie=AUTHDC01WEB04; path=/;
domain=mfasa.chase.com; expires=Sun,
09-Nov-2014 00:45:18 GMT
GET
/pixel?pixelID=93201&pixelID=93202&pixelID
=93203&partnerID=77&clientID=1951&key=
segment HTTP/1.1
Host: segment-pixel.invitemedia.com
GET
/pixel?pixelID=93201&pixelID=93202&a
mp;pixelID=93203&partnerID=77&
clientID=1951&key=segment HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/activity;src=1379696;dcnet=4155;boom=51
254;sz=1x1;ord=944529853? HTTP/1.1
Host: ad.doubleclick.net
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive

Referer: https://www.chase.com/
GET /f?pid=13928&cb=?1966508396
HTTP/1.1
Host: ads.undertone.com
GET /f?pid=13928&cb=?1966508396
HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/activity;type=homep504;cat=hompa184;src
=2798333;u1=;u2=;u3=;u4=;u5=;u6=;u7=;u8
=;u9=;u10=;u11=;u12=;u13=;u14=;u15=;u16
=;u17=;u19=;u20=;u21=B475C0EA2A9D093
C;=;ord=944529853? HTTP/1.1
Host: ad.doubleclick.net
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/ad/N5762.547841.VISUALIQINC/B8070268.
110826655;sz=1x1;ord=944529853?
HTTP/1.1
Host: ad.doubleclick.net

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/pagead/viewthroughconversion/1036322744
/?value=0&label=AgenCNqg-QMQuI-U7gM&
guid=ON&script=0;data=cell%3D%3Bspid%
3D HTTP/1.1
Host: googleads.g.doubleclick.net
GET
/pagead/viewthroughconversion/1036322744
/?value=0&label=AgenCNqg-QMQuI-U7
gM&guid=ON&script=0;data=cell
%3D%3Bspid%3D HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/pixel/smt?pid=4004&t=8001&ot=pixel&uid=
HTTP/1.1
Host: p.acxiom-online.com
GET
/pixel/smt?pid=4004&t=8001&ot=
pixel&uid= HTTP/1.1

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/ad/N5762.547841.VISUALIQINC/B8070268.
110826579;sz=1x1;ord=944529853?
HTTP/1.1
Host: ad.doubleclick.net
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/site/5473?limit=10&ret=html&phint=v1st%3
DB475C0EA2A9D093C&phint=ECI%3D&phi
nt=CAT%3D&bknms=1&phint=pg%3D01
HTTP/1.1
Host: stags.bluekai.com
GET
/site/5473?limit=10&ret=html&phin
t=v1st%3DB475C0EA2A9D093C&phint
=ECI%3D&phint=CAT%3D&bknm
s=1&phint=pg%3D01 HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13

Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
POST /ocsp HTTP/1.1
Host: clients1.google.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 107
Content-Type: application/ocsp-request

173.194.112.193
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Date: Sun, 09 Nov 2014 00:32:23 GMT
Expires: Thu, 13 Nov 2014 00:32:23 GMT
Cache-Control: public, max-age=345600
Server: ocsp_responder
Content-Length: 463
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Alternate-Protocol: 80:quic,p=0.01
Connection: keep-alive

POST / HTTP/1.1
Host: g.symcd.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 102
Content-Type: application/ocsp-request

23.46.123.27
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Server: nginx/1.4.7
Content-Length: 1454
Content-Transfer-Encoding: binary
Cache-Control: max-age=386977, public,
no-transform, must-revalidate
Last-Modified: Thu, 6 Nov 2014 11:58:55
GMT
Expires: Thu, 13 Nov 2014 11:58:55 GMT
Date: Sun, 09 Nov 2014 00:32:23 GMT
Connection: keep-alive

POST / HTTP/1.1
Host: vassg141.ocsp.omniroot.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 119
Content-Type: application/ocsp-request

195.159.219.24
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Server: nginx
Content-Length: 1765
Date: Sun, 09 Nov 2014 00:32:23 GMT
Connection: keep-alive

POST /ocsp HTTP/1.1


Host: clients1.google.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 107
Content-Type: application/ocsp-request
GET
/pixel?pixelID=93201&pixelID=93202&pixelID
=93203&partnerID=77&clientID=1951&key=
segment HTTP/1.1
Host: segment-pixel.invitemedia.com
GET
/pixel?pixelID=93201&pixelID=93202&a
mp;pixelID=93203&partnerID=77&
clientID=1951&key=segment HTTP/1.1

173.194.112.193
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Date: Sun, 09 Nov 2014 00:32:23 GMT
Expires: Thu, 13 Nov 2014 00:32:23 GMT
Cache-Control: public, max-age=345600
Server: ocsp_responder
Content-Length: 463
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Alternate-Protocol: 80:quic,p=0.01
Connection: keep-alive

173.194.112.201
HTTP/1.1 302 Found
Content-Type: text/html; charset=UTF-8
Location:
https://bid.g.doubleclick.net/xbbe/invitepixel/p
ixel?pixelID=93201&pixelID=93202&am
p;pixelID=93203&partnerID=77&cli
entID=1951&key=segment
Cache-Control: private

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/online/Home/images/wa01.gif?log=1&wa_c
b=944529853&wa_aid_i=62467101&jp_aid_
p=col_uk_home/hero&wa_tp=13&wa_uri=htt
ps://www.chase.com/ HTTP/1.1
Host: www.chase.com
GET
/online/Home/images/wa01.gif?log=1&
wa_cb=944529853&wa_aid_i=6246710
1&jp_aid_p=col_uk_home/hero&w
a_tp=13&wa_uri=https://www.chase.co
m/ HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
Cookie: v1st=B475C0EA2A9D093C;
fireOnce=
GET
/online/Home/images/wa01.gif?log=1&wa_c
b=944529853&wa_aid_i=58581082&jp_aid_
p=col_uk_home/trip2&wa_tp=13&wa_uri=htt
ps://www.chase.com/ HTTP/1.1
Host: www.chase.com

X-Content-Type-Options: nosniff
Date: Sun, 09 Nov 2014 00:32:23 GMT
Server: sffe
Content-Length: 350
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 443:quic,p=0.01

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/gif
Date: Sun, 09 Nov 2014 00:32:23 GMT
Server: Apache
Cache-Control: no-cache
Expires: Thu, 01 Dec 1994 16:00:00 GMT
Last-Modified: Wed, 19 Mar 2014 02:11:19
GMT
Etag:
"1914185-2b-4f4ec2b137fc0"
Accept-Ranges: bytes
Content-Length: 43
Connection: Keep-Alive

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/gif
Date: Sun, 09 Nov 2014 00:32:23 GMT
Server: Apache
Cache-Control: no-cache

GET
/online/Home/images/wa01.gif?log=1&
wa_cb=944529853&wa_aid_i=5858108
2&jp_aid_p=col_uk_home/trip2&w
a_tp=13&wa_uri=https://www.chase.co
m/ HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
Cookie: v1st=B475C0EA2A9D093C;
fireOnce=
GET
/online/Home/images/wa01.gif?log=1&wa_c
b=944529853&wa_aid_i=59266721&jp_aid_
p=col_uk_home/trip3&wa_tp=13&wa_uri=htt
ps://www.chase.com/ HTTP/1.1
Host: www.chase.com
GET
/online/Home/images/wa01.gif?log=1&
wa_cb=944529853&wa_aid_i=5926672
1&jp_aid_p=col_uk_home/trip3&w
a_tp=13&wa_uri=https://www.chase.co
m/ HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

Expires: Thu, 01 Dec 1994 16:00:00 GMT


Last-Modified: Fri, 21 Mar 2014 02:03:12
GMT
Etag:
"4bd8061-2b-4f51449bb3800"
Accept-Ranges: bytes
Content-Length: 43
Connection: Keep-Alive

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/gif
Date: Sun, 09 Nov 2014 00:32:23 GMT
Server: Apache
Cache-Control: no-cache
Expires: Thu, 01 Dec 1994 16:00:00 GMT
Last-Modified: Fri, 21 Mar 2014 02:03:12
GMT
Etag:
"4bd8061-2b-4f51449bb3800"
Accept-Ranges: bytes
Content-Length: 43
Connection: Keep-Alive

Cookie: v1st=B475C0EA2A9D093C;
fireOnce=
GET
/online/Home/images/wa01.gif?log=1&wa_c
b=944529853&wa_aid_i=62517824&jp_aid_
p=col_uk_home/trip1&wa_tp=13&wa_uri=htt
ps://www.chase.com/ HTTP/1.1
Host: www.chase.com
GET
/online/Home/images/wa01.gif?log=1&
wa_cb=944529853&wa_aid_i=6251782
4&jp_aid_p=col_uk_home/trip1&w
a_tp=13&wa_uri=https://www.chase.co
m/ HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
Cookie: v1st=B475C0EA2A9D093C;
fireOnce=
POST / HTTP/1.1
Host: ocsp.digicert.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 115

159.53.84.126
HTTP/1.1 200 OK
Content-Type: image/gif
Date: Sun, 09 Nov 2014 00:32:23 GMT
Server: Apache
Cache-Control: no-cache
Expires: Thu, 01 Dec 1994 16:00:00 GMT
Last-Modified: Fri, 21 Mar 2014 02:13:57
GMT
Etag:
"33c8153-2b-4f514702d2340"
Accept-Ranges: bytes
Content-Length: 43
Connection: Keep-Alive

93.184.220.29
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Accept-Ranges: bytes
Cache-Control: max-age=512978
Date: Sun, 09 Nov 2014 00:32:24 GMT
Etag: "545e71a2-1d7"
Expires: Sat, 15 Nov 2014 12:32:24 GMT
Last-Modified: Sat, 08 Nov 2014 19:40:18
GMT
Server: ECS (arn/45A6)
Content-Length: 471
Connection: keep-alive

Content-Type: application/ocsp-request
POST / HTTP/1.1
Host: ocsp.digicert.com
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 115
Content-Type: application/ocsp-request

GET
/activity;src=1379696;dcnet=4155;boom=51
254;sz=1x1;ord=944529853? HTTP/1.1
Host: ad.doubleclick.net
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

POST / HTTP/1.1
Host: ocsp.entrust.net

93.184.220.29
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Accept-Ranges: bytes
Cache-Control: max-age=508691
Date: Sun, 09 Nov 2014 00:32:24 GMT
Etag: "545e6d0b-1d7"
Expires: Sat, 15 Nov 2014 12:32:24 GMT
Last-Modified: Sat, 08 Nov 2014 19:20:43
GMT
Server: ECS (arn/45A6)
Content-Length: 471
Connection: keep-alive

173.194.112.220
HTTP/1.1 200 OK
Content-Type: image/gif
P3p:
policyref="https://googleads.g.doublecli
ck.net/pagead/gcn_p3p_.xml",
CP="CURa ADMa DEVa TAIo PSAo
PSDo OUR IND UNI PUR INT DEM STA
PRE COM NAV OTC NOI DSP COR"
Date: Sun, 09 Nov 2014 00:32:24 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 443:quic,p=0.01
Set-Cookie:
test_cookie=CheckForPermission;
expires=Sun, 09-Nov-2014 00:47:24 GMT;
path=/; domain=.doubleclick.net
23.53.37.231
HTTP/1.0 200 OK

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 103
Content-Type: application/ocsp-request

GET
/activity;type=homep504;cat=hompa184;src
=2798333;u1=;u2=;u3=;u4=;u5=;u6=;u7=;u8
=;u9=;u10=;u11=;u12=;u13=;u14=;u15=;u16
=;u17=;u19=;u20=;u21=B475C0EA2A9D093
C;=;ord=944529853? HTTP/1.1
Host: ad.doubleclick.net
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

GET
/ad/N5762.547841.VISUALIQINC/B8070268.
110826655;sz=1x1;ord=944529853?
HTTP/1.1
Host: ad.doubleclick.net

Content-Type: application/ocsp-response
Content-Transfer-Encoding: Binary
Content-Length: 1939
Last-Modified: Sat, 08 Nov 2014 21:17:09
GMT
Etag:
"5E548249C76CADAB793EDCA7C2D
05C3B3536E0C8"
Cache-Control: public, no-transform,
must-revalidate, max-age=132
Expires: Sun, 09 Nov 2014 00:34:36 GMT
Date: Sun, 09 Nov 2014 00:32:24 GMT
Connection: keep-alive

173.194.112.220
HTTP/1.1 200 OK
Content-Type: image/gif
P3p:
policyref="https://googleads.g.doublecli
ck.net/pagead/gcn_p3p_.xml",
CP="CURa ADMa DEVa TAIo PSAo
PSDo OUR IND UNI PUR INT DEM STA
PRE COM NAV OTC NOI DSP COR"
Date: Sun, 09 Nov 2014 00:32:24 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 443:quic,p=0.01
Set-Cookie:
test_cookie=CheckForPermission;
expires=Sun, 09-Nov-2014 00:47:24 GMT;
path=/; domain=.doubleclick.net
173.194.112.220
HTTP/1.1 302 Found
Content-Type: image/gif
P3p:
policyref="https://googleads.g.doublecli
ck.net/pagead/gcn_p3p_.xml",

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

GET
/ad/N5762.547841.VISUALIQINC/B8070268.
110826579;sz=1x1;ord=944529853?
HTTP/1.1
Host: ad.doubleclick.net
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

CP="CURa ADMa DEVa TAIo PSAo


PSDo OUR IND UNI PUR INT DEM STA
PRE COM NAV OTC NOI DSP COR"
Date: Sun, 09 Nov 2014 00:32:24 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location:
https://s1.2mdn.net/viewad/4396782/spacer.
gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 0
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 443:quic,p=0.01
Set-Cookie:
test_cookie=CheckForPermission;
expires=Sun, 09-Nov-2014 00:47:24 GMT;
path=/; domain=.doubleclick.net
173.194.112.220
HTTP/1.1 302 Found
Content-Type: image/gif
P3p:
policyref="https://googleads.g.doublecli
ck.net/pagead/gcn_p3p_.xml",
CP="CURa ADMa DEVa TAIo PSAo
PSDo OUR IND UNI PUR INT DEM STA
PRE COM NAV OTC NOI DSP COR"
Date: Sun, 09 Nov 2014 00:32:24 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Location:
https://s1.2mdn.net/viewad/4396782/spacer.
gif
X-Content-Type-Options: nosniff
Server: cafe
Content-Length: 0
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 443:quic,p=0.01
Set-Cookie:
test_cookie=CheckForPermission;
expires=Sun, 09-Nov-2014 00:47:24 GMT;
path=/; domain=.doubleclick.net

GET /f?pid=13928&cb=?1966508396
HTTP/1.1
Host: ads.undertone.com
GET /f?pid=13928&cb=?1966508396
HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

GET
/xbbe/invitepixel/pixel?pixelID=93201&pixelID
=93202&pixelID=93203&partnerID=77&clien
tID=1951&key=segment HTTP/1.1
Host: bid.g.doubleclick.net
GET
/xbbe/invitepixel/pixel?pixelID=93201&pi
xelID=93202&pixelID=93203&part
nerID=77&clientID=1951&key=se
gment HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

2.23.143.65
HTTP/1.1 302 Moved Temporarily
Content-Type: text/plain; charset=utf-8
Server: nginx
Content-Length: 0
Cache-Control: private, max-age=0,
no-cache
Expires: Mon, 26 Jul 1997 05:00:00 GMT
Location:
/f?pid=13928&cb=?1966508396&
ct=1
P3p: policyref="/w3c/p3p.xml",
CP="NOI DSP COR NID CURa DEVa
PSDo OUR BUS UNI COM NAV"
Pragma: no-cache
Date: Sun, 09 Nov 2014 00:32:24 GMT
Connection: keep-alive
Set-Cookie:
UTID=acbb80d281ce49ad990c044e066395
71; Expires=Tue, 10 Nov 2015 00:32:24
UTC

173.194.112.217
HTTP/1.1 302 Found
Content-Type: text/html; charset=UTF-8
Location:
https://ad.doubleclick.net/activity;src=42464
27;type=invmedia;cat=jykigtxv;ord=1?
Cache-Control: no-cache
Pragma: no-cache
X-Content-Type-Options: nosniff
Date: Sun, 09 Nov 2014 00:32:24 GMT
Server: xbfe
Content-Length: 0
X-XSS-Protection: 1; mode=block
X-Frame-Options: SAMEORIGIN
Alternate-Protocol: 443:quic,p=0.01
Set-Cookie:
test_cookie=CheckForPermission;
expires=Sun, 09-Nov-2014 00:47:24 GMT;
path=/; domain=.doubleclick.net

GET
/site/5473?limit=10&ret=html&phint=v1st%3
DB475C0EA2A9D093C&phint=ECI%3D&phi
nt=CAT%3D&bknms=1&phint=pg%3D01
HTTP/1.1
Host: stags.bluekai.com
GET
/site/5473?limit=10&ret=html&phin
t=v1st%3DB475C0EA2A9D093C&phint
=ECI%3D&phint=CAT%3D&bknm
s=1&phint=pg%3D01 HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

GET
/activity;src=4246427;type=invmedia;cat=jyki
gtxv;ord=1? HTTP/1.1
Host: ad.doubleclick.net
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7

173.192.220.67
HTTP/1.1 302 Found
Content-Type: text/html
Date: Sun, 09 Nov 2014 00:32:24 GMT
Server: Apache/2.2.24 (Unix)
P3p: CP="NOI DSP COR CUR ADMo
DEVo PSAo PSDo OUR SAMo BUS UNI
NAV",
policyref="http://tags.bluekai.com/w3c/
p3p.xml"
Set-Cookie:
bkc=KJhnasPQisaCRJeRaC4Y99x9aVAYPy
==; expires=Fri, 08-May-2015 00:32:24
GMT; path=/; domain=.bluekai.com
bkdc=wdc; expires=Fri, 08-May-2015
00:32:24 GMT; path=/; domain=.bluekai.com
bklc=0; expires=Fri, 08-May-2015 00:32:24
GMT; path=/; domain=.bluekai.com
bku=RHD99OitUkxtLzGD; expires=Fri,
08-May-2015 00:32:24 GMT; path=/;
domain=.bluekai.com
Location:
https://stags.bluekai.com/site/5473?dt=0&a
mp;r=603629424&sig=2237519859&a
mp;bkca=KJpn0zpBnnWNBa9guithpuMJpP
Wg01M1vfW+10yrDEPtzE/hBlDtzcD6zgH6
1q965GqvrMof9iVCcs4cWO97vELF+2MVW
YoRA9TD1p9W9vCzcUW=
Content-Length: 0
BK-Server: 7a30
173.194.112.220
HTTP/1.1 200 OK
Content-Type: image/gif
P3p:
policyref="https://googleads.g.doublecli
ck.net/pagead/gcn_p3p_.xml",
CP="CURa ADMa DEVa TAIo PSAo
PSDo OUR IND UNI PUR INT DEM STA
PRE COM NAV OTC NOI DSP COR"
Date: Sun, 09 Nov 2014 00:32:24 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
X-Content-Type-Options: nosniff
Server: cafe

Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
Cookie: test_cookie=CheckForPermission

GET /viewad/4396782/spacer.gif HTTP/1.1


Host: s1.2mdn.net
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
GET
/site/5473?dt=0&r=603629424&sig=223751
9859&bkca=KJpn0zpBnnWNBa9guithpuMJp
PWg01M1vfW+10yrDEPtzE/hBlDtzcD6zgH
61q965GqvrMof9iVCcs4cWO97vELF+2MV
WYoRA9TD1p9W9vCzcUW= HTTP/1.1
Host: stags.bluekai.com
GET
/site/5473?dt=0&r=603629424&si
g=2237519859&bkca=KJpn0zpBnnWN
Ba9guithpuMJpPWg01M1vfW+10yrDEPtzE/
hBlDtzcD6zgH61q965GqvrMof9iVCcs4cWO
97vELF+2MVWYoRA9TD1p9W9vCzcUW=
HTTP/1.1

Content-Length: 42
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 443:quic,p=0.01
Set-Cookie:
id=22c6fe5314030036||t=1415493144|et=73
0|cs=002213fd48473a609be0f38f47;
expires=Tue, 08-Nov-2016 00:32:24 GMT;
path=/; domain=.doubleclick.net
test_cookie=; expires=Mon, 21-Jul-2008
23:59:00 GMT; path=/;
domain=.doubleclick.net
173.194.113.188
HTTP/1.1 200 OK
Content-Type: image/gif
Last-Modified: Tue, 08 Apr 2014 23:35:10
GMT
Date: Sat, 08 Nov 2014 03:16:00 GMT
Expires: Sun, 09 Nov 2014 03:16:00 GMT
Access-Control-Allow-Origin: *
X-Content-Type-Options: nosniff
Server: sffe
Content-Length: 1095
X-XSS-Protection: 1; mode=block
Age: 76584
Cache-Control: public, max-age=86400
Alternate-Protocol: 443:quic,p=0.01
173.192.220.67
HTTP/1.1 200 OK
Content-Type: text/html
Date: Sun, 09 Nov 2014 00:32:24 GMT
Server: Apache/2.2.24 (Unix)
P3p: CP="NOI DSP COR CUR ADMo
DEVo PSAo PSDo OUR SAMo BUS UNI
NAV",
policyref="http://tags.bluekai.com/w3c/
p3p.xml"
Pragma: no-cache
Expires: Thu, 01 Dec 1994 16:00:00 GMT
Cache-Control: max-age=0, no-cache,
no-store
Set-Cookie:
bkc=KJ0nRsHQmsfJpYYhnuTW0sH/asPQ

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
Cookie:
bkc=KJhnasPQisaCRJeRaC4Y99x9aVAYPy
==; bkdc=wdc; bklc=0;
bku=RHD99OitUkxtLzGD

GET
/pixel/smt?pid=4004&t=8001&ot=pixel&uid=
HTTP/1.1
Host: p.acxiom-online.com
GET
/pixel/smt?pid=4004&t=8001&ot=
pixel&uid= HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/

mYlwiLn4CXq4C1qdh/7vFTds86NixKWcnD
mNphrBg2rn0gIbZyZaUNmn0GXLHmDF0W
qkp6qMOIiQXAr713eyW2eT/O3j481wNUtm
NSMZmSehf5cTeN1H4WTrOGq56NcBNbN
WPEIM9oD4yTJxeyOJSDfX; expires=Fri,
08-May-2015 00:32:24 GMT; path=/;
domain=.bluekai.com
bko=KJhMDsjQABQVaXn/999ctxsk;
expires=Fri, 08-May-2015 00:32:24 GMT;
path=/; domain=.bluekai.com
bkst=KJhMRPMvpze9pkYSk8tUU8T7Lu6rO
99Gz9P1; expires=Fri, 08-May-2015
00:32:24 GMT; path=/; domain=.bluekai.com
bku=RHD99OitUkxtLzGD; expires=Fri,
08-May-2015 00:32:24 GMT; path=/;
domain=.bluekai.com
bkw5=KJ0gZXw9GYeUyBGCp1e90ceNJ/C1
anVFjZ/99W84ODL=; expires=Fri,
08-May-2015 00:32:24 GMT; path=/;
domain=.bluekai.com
BK-Server: c2c1
Content-Length: 194
54.210.223.49
HTTP/1.1 302 Found
HTTP/1.1 302 Found
Date: Sun, 09 Nov 2014 00:32:24 GMT
Location:
https://p.acxiom-online.com/pixel/smt?pid=4
004&t=8001&ot=pixel&uid=&
amp;ccfm=e230c181-8b0e-4ef1-8d9c-39f16
d5879fb
P3p: CP="This is not a P3P policy.
See
http://acxiom.com/About-Acxiom/Privacy/ for
more information."
Server: Apache-Coyote/1.1
Set-Cookie:
ACX_COUNT=0;Domain=.acxiom-online.co
m;Path=/;Max-Age=31536000;Expires=Mon,
09 Nov 2015 00:32:24 GMT
ACXID="CASHID=&V=3&ID
=e230c181-8b0e-4ef1-8d9c-39f16d5879fb&
quot;;Domain=.acxiom-online.com;Path=/;M
ax-Age=31536000;Expires=Mon, 09 Nov
2015 00:32:24 GMT

Content-Length: 0
Connection: keep-alive
GET /f?pid=13928&cb=?1966508396&ct=1
HTTP/1.1
Host: ads.undertone.com
GET
/f?pid=13928&cb=?1966508396&
ct=1 HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
Cookie:
UTID=acbb80d281ce49ad990c044e066395
71
GET
/pixel?google_nid=bluekai&google_cm&goog
le_sc&a=4& HTTP/1.1
Host: cm.g.doubleclick.net
GET
/pixel?google_nid=bluekai&google_cm
&google_sc&a=4& HTTP/1.1
User-Agent: Mozilla/5.0 (Windows; U;
Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept: image/png,image/*;q=0.8,*/*;q=0.5
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive

2.23.143.65
HTTP/1.1 204 No Content
HTTP/1.1 204 No Content
Server: nginx
Cache-Control: private, max-age=0,
no-cache
Expires: Mon, 26 Jul 1997 05:00:00 GMT
P3p: policyref="/w3c/p3p.xml",
CP="NOI DSP COR NID CURa DEVa
PSDo OUR BUS UNI COM NAV"
Pragma: no-cache
Date: Sun, 09 Nov 2014 00:32:24 GMT
Connection: keep-alive
Set-Cookie:
UTZ=eJyrViooyk/LzEktVrKKjjY0tjSy0Ik2NDO
2MNYxjI2NrQUAqOUJmA==; expires=Sat,
07-Feb-2015 00:32:24 GMT; path=/
UTID=acbb80d281ce49ad990c044e066395
71; expires=Tue, 10-Nov-2015 00:32:24
GMT; path=/

173.194.112.109
HTTP/1.1 302 Found
Content-Type: text/html; charset=UTF-8
P3p:
policyref="https://googleads.g.doublecli
ck.net/pagead/gcn_p3p_.xml",
CP="CURa ADMa DEVa TAIo PSAo
PSDo OUR IND UNI PUR INT DEM STA
PRE COM NAV OTC NOI DSP COR"
Location:
https://tags.bluekai.com/site/2981?id=&
a=4&google_gid=CAESEHma7vl8KRm
yg7hg5S7hu6o&google_cver=1
Date: Sun, 09 Nov 2014 00:32:25 GMT
Pragma: no-cache
Expires: Fri, 01 Jan 1990 00:00:00 GMT
Cache-Control: no-cache, must-revalidate
Server: HTTP server (unknown)

Referer:
https://stags.bluekai.com/site/5473?dt=0&a
mp;r=603629424&sig=2237519859&a
mp;bkca=KJpn0zpBnnWNBa9guithpuMJpP
Wg01M1vfW+10yrDEPtzE/hBlDtzcD6zgH6
1q965GqvrMof9iVCcs4cWO97vELF+2MVW
YoRA9TD1p9W9vCzcUW=
Cookie:
id=22c6fe5314030036||t=1415493144|et=73
0|cs=002213fd48473a609be0f38f47

Content-Length: 304
X-XSS-Protection: 1; mode=block
Alternate-Protocol: 443:quic,p=0.01

GET
/pixel/smt?pid=4004&t=8001&ot=pixel&uid=
&ccfm=e230c181-8b0e-4ef1-8d9c-39f16d58
79fb HTTP/1.1
Host: p.acxiom-online.com
GET
/pixel/smt?pid=4004&t=8001&ot=
pixel&uid=&ccfm=e230c181-8b0e
-4ef1-8d9c-39f16d5879fb HTTP/1.1

54.210.223.49
HTTP/1.1 302 Found
Content-Type: image/gif
Date: Sun, 09 Nov 2014 00:32:24 GMT
Location:
https://r.nexac.com/e/getdata.xgi?dt=br&am
p;pkey=rfkm88wbvzn36&reppipe=,&am
p;edr=off&repequal=_&ru=https%
3A%2F%2Fp.acxiom-online.com%2Fpixel%
2Fpel%3Fpid%3D1001%26dpid%3D4004%
26id%3D%3Cna_da%3E%26t%3D4006%26
uid%3D%3Cna_id%3E
P3p: CP="This is not a P3P policy.
See
http://acxiom.com/About-Acxiom/Privacy/ for
more information."
Server: Apache-Coyote/1.1
Set-Cookie:
ACX_COUNT=1;Domain=.acxiom-online.co
m;Path=/;Max-Age=31536000;Expires=Mon,
09 Nov 2015 00:32:25 GMT
ACXID="CASHID=&P13=141549
3145159&V=3&ID=e230c181-8b0
e-4ef1-8d9c-39f16d5879fb";Domain=.a
cxiom-online.com;Path=/;Max-Age=3153600
0;Expires=Mon, 09 Nov 2015 00:32:25 GMT
Content-Length: 0
Connection: keep-alive

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer: https://www.chase.com/
Cookie: ACX_COUNT=0;
ACXID="CASHID=&V=3&ID
=e230c181-8b0e-4ef1-8d9c-39f16d5879fb&
quot;

POST / HTTP/1.1
Host: tj.symcd.com

23.46.123.27
HTTP/1.0 200 OK
Content-Type: application/ocsp-response
Server: nginx/1.4.7
Content-Length: 1413

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Content-Length: 114
Content-Type: application/ocsp-request

Content-Transfer-Encoding: binary
Cache-Control: max-age=385218, public,
no-transform, must-revalidate
Last-Modified: Thu, 6 Nov 2014 11:28:44
GMT
Expires: Thu, 13 Nov 2014 11:28:44 GMT
Date: Sun, 09 Nov 2014 00:32:25 GMT
Connection: keep-alive

GET
/site/2981?id=&a=4&google_gid=CAESEHm
a7vl8KRmyg7hg5S7hu6o&google_cver=1
HTTP/1.1
Host: tags.bluekai.com
GET
/site/2981?id=&a=4&google_gid=
CAESEHma7vl8KRmyg7hg5S7hu6o&g
oogle_cver=1 HTTP/1.1

173.192.220.64
HTTP/1.1 200 OK
Content-Type: image/gif
Date: Sun, 09 Nov 2014 00:32:25 GMT
Server: Apache/2.2.24 (Unix)
P3p: CP="NOI DSP COR CUR ADMo
DEVo PSAo PSDo OUR SAMo BUS UNI
NAV",
policyref="http://tags.bluekai.com/w3c/
p3p.xml"
Pragma: no-cache
Expires: Thu, 01 Dec 1994 16:00:00 GMT
Cache-Control: max-age=0, no-cache,
no-store
Content-Length: 62
Set-Cookie:
bkc=KJhq0Ll9LevRiDa0VNy//y1eyN/QlT3eW
RPFQzSwRVs9X0m9hcanjQRJve2Hk/cC+
eygY7X4s7XEsFXEJ0gdwC34BTAaCHI6eB
DIqpuIqiX3dIorJCHIEu63wf/xkqXQs8DdsT64
G/wvn8lvQ1JwxmmeSsEIEE8D2pkVG8g7Q
1SlHI1dEWUymqARscjwC8MwOwBdJSgbs
HVG4aeXy4Q9SX8joy==; expires=Fri,
08-May-2015 00:32:25 GMT; path=/;
domain=.bluekai.com bkdc=wdc;
expires=Fri, 08-May-2015 00:32:25 GMT;
path=/; domain=.bluekai.com
bkst=KJhMRPMvpz9QpKeLbOgLbosqSabV
RIW5karjqobHqCoL7ka3kiI8nuTW9nX5Y6G
=; expires=Fri, 08-May-2015 00:32:25 GMT;
path=/; domain=.bluekai.com

User-Agent: Mozilla/5.0 (Windows; U;


Windows NT 6.1; en-US; rv:1.9.2.13)
Gecko/20101203 Firefox/3.6.13
Accept:
text/html,application/xhtml+xml,application/x
ml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset:
ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 115
Connection: keep-alive
Referer:
https://stags.bluekai.com/site/5473?dt=0&a
mp;r=603629424&sig=2237519859&a
mp;bkca=KJpn0zpBnnWNBa9guithpuMJpP
Wg01M1vfW+10yrDEPtzE/hBlDtzcD6zgH6
1q965GqvrMof9iVCcs4cWO97vELF+2MVW
YoRA9TD1p9W9vCzcUW=
Cookie:
bkc=KJ0nRsHQmsfJpYYhnuTW0sH/asPQ

mYlwiLn4CXq4C1qdh/7vFTds86NixKWcnD
mNphrBg2rn0gIbZyZaUNmn0GXLHmDF0W
qkp6qMOIiQXAr713eyW2eT/O3j481wNUtm
NSMZmSehf5cTeN1H4WTrOGq56NcBNbN
WPEIM9oD4yTJxeyOJSDfX; bkdc=wdc;
bklc=0; bku=RHD99OitUkxtLzGD;
bko=KJhMDsjQABQVaXn/999ctxsk;
bkst=KJhMRPMvpze9pkYSk8tUU8T7Lu6rO
99Gz9P1;
bkw5=KJ0gZXw9GYeUyBGCp1e90ceNJ/C1
anVFjZ/99W84ODL=

bku=RHD99OitUkxtLzGD; expires=Fri,
08-May-2015 00:32:25 GMT; path=/;
domain=.bluekai.com
BK-Server: c9b0

Potrebbero piacerti anche