【发布时间】:2017-03-21 12:57:14
【问题描述】:
我从 Fiddler 那里捕捉到了奇怪的通话记录。
电话反复发生。
我用了几个关键字搜索了它,但没有任何线索。
有人知道吗?
CNT https://1 CON 216 背景:公元前67年 Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 6402
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 61ce
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 5dc2
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 5be6
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 581c
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 5642
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 52bd
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 5156
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 4da3
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 4cce
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 4912
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 48c3
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 4510
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 44f3
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 4171
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 4164
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 3e64
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 3e5e
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 3bee
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 3bee
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 39e7
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
CNT https://1 CON 216
Context: 39e7
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 216
Context: 39dd
Last-Msg-Id: 0
------------------------------------------------------------------
CNT https://1 CON 231
Context: 39dd
Last-Msg-Id: 159d428c446a5b3e
------------------------------------------------------------------
【问题讨论】:
-
当这个奇怪的 HTTP 请求被捕获时,哪个应用程序/进程正在运行?
-
@ELaRoche 奇怪的是图片中的红色电话。
-
@shaochuancs 不知道 Fiddler 提供了进程信息。我确认呼叫来自 OneDrive 应用程序。谢谢大家:)
-
我会使用 Wireshark 进行更深入的挖掘。我已经使用 Fiddler 多年,没有遇到过你的场景。