来自我的计算机的未知https呼叫 [英] Unknown https call from my computer

查看:43
本文介绍了来自我的计算机的未知https呼叫的处理方法,对大家解决问题具有一定的参考价值,需要的朋友们下面随着小编来一起学习吧!

问题描述

我从Fiddler捕获了奇怪的通话记录.

I captured weird call history from Fiddler.

通话反复发生.

我用几个关键字搜索了它,但是没有任何线索.

I searched it with several keywords, but there were no clues.

有人知道吗?

CNT https://1 CON 216 内容:67bc Last-Msg-Id:0

CNT https://1 CON 216 Context: 67bc Last-Msg-Id: 0

------------------------------------------------------------------

CNT https://1 CON 231
Context: 6402
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

CNT https://1 CON 216
Context: 61ce
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 231
Context: 5dc2
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

CNT https://1 CON 216
Context: 5be6
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 231
Context: 581c
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

CNT https://1 CON 216
Context: 5642
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 231
Context: 52bd
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

CNT https://1 CON 216
Context: 5156
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 231
Context: 4da3
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

CNT https://1 CON 216
Context: 4cce
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 231
Context: 4912
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

CNT https://1 CON 216
Context: 48c3
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 231
Context: 4510
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

CNT https://1 CON 216
Context: 44f3
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 231
Context: 4171
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

CNT https://1 CON 216
Context: 4164
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 231
Context: 3e64
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

CNT https://1 CON 216
Context: 3e5e
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 231
Context: 3bee
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

CNT https://1 CON 216
Context: 3bee
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 231
Context: 39e7
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

CNT https://1 CON 216
Context: 39e7
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 216
Context: 39dd
Last-Msg-Id: 0




------------------------------------------------------------------

CNT https://1 CON 231
Context: 39dd
Last-Msg-Id: 159d428c446a5b3e




------------------------------------------------------------------

推荐答案

是的,我之前已经看过这种情况,它来自Windows资源管理器进程.这是无害的,但是基本上发生的是客户端正在尝试通过HTTPS代理隧道发送非HTTP流量,并且由于它不是合法的HTTPS流量,因此您会收到奇怪的解析错误,如屏幕截图所示.

Yeah, I've seen this before, coming from the Windows Explorer process. It's harmless, but basically what's happening is the client is trying to send non HTTP traffic through a HTTPS proxy tunnel, and because it's not legal HTTPS traffic, you get the weird parsing errors as shown in your screenshot.

可悲的是,我不记得我关于Windows特定功能导致此问题的发现.请参阅 https://github.com/cvandeplas上的wnpconnmanager.cpp备注. /plaso/blob/master/test_data/skydriveerr.log ,也许这是Windows通知服务提供的?

Sadly, I don't remember my findings about what specific Windows feature causes this. See the wnpconnmanager.cpp remark at https://github.com/cvandeplas/plaso/blob/master/test_data/skydriveerr.log, maybe this is from the Windows Notification Service?

这篇关于来自我的计算机的未知https呼叫的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!

查看全文
登录 关闭
扫码关注1秒登录
发送“验证码”获取 | 15天全站免登陆