我从Fiddler手中捕获了奇怪的通话记录。
电话一再发生。
我用几个关键词搜索了它,但没有线索。
有人知道吗?
CNT https://1 CON 216 背景:67bc Last-Msg-Id:0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 6402
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 61ce
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 5dc2
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 5be6
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 581c
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 5642
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 52bd
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 5156
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 4da3
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 4cce
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 4912
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 48c3
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 4510
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 44f3
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 4171
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 4164
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 3e64
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 3e5e
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 3bee
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 3bee
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 39e7
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 39e7
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 216
Context: 39dd
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 39dd
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
答案 0 :(得分:0)
是的,我以前见过这个,来自Windows资源管理器进程。它是无害的,但基本上发生的是客户端试图通过HTTPS代理隧道发送非HTTP流量,并且因为它不是合法的HTTPS流量,所以你会得到奇怪的解析错误。显示在屏幕截图中。
可悲的是,我不记得有关Windows特定功能导致此问题的调查结果。请参阅https://github.com/cvandeplas/plaso/blob/master/test_data/skydriveerr.log上的wnpconnmanager.cpp
评论,也许这是来自Windows通知服务?