Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49744 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49743 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49864 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49742 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49741 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49740 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49861 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49860 |
Source: unknown | Network traffic detected: HTTP traffic on port 49789 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49766 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49743 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49795 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49859 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49858 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49857 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49735 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49856 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49734 |
Source: unknown | Network traffic detected: HTTP traffic on port 49772 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49855 |
Source: unknown | Network traffic detected: HTTP traffic on port 49841 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49854 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49732 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49853 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49731 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49730 |
Source: unknown | Network traffic detected: HTTP traffic on port 49732 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49851 |
Source: unknown | Network traffic detected: HTTP traffic on port 49703 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49858 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49784 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49749 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49806 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49823 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49729 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49728 |
Source: unknown | Network traffic detected: HTTP traffic on port 49714 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49727 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49847 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49846 |
Source: unknown | Network traffic detected: HTTP traffic on port 49790 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49723 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49841 |
Source: unknown | Network traffic detected: HTTP traffic on port 49731 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49840 |
Source: unknown | Network traffic detected: HTTP traffic on port 49834 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49760 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49717 |
Source: unknown | Network traffic detected: HTTP traffic on port 49715 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49716 |
Source: unknown | Network traffic detected: HTTP traffic on port 49847 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49715 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49714 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49835 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49713 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49834 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49712 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49833 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49832 |
Source: unknown | Network traffic detected: HTTP traffic on port 49709 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49710 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49831 |
Source: unknown | Network traffic detected: HTTP traffic on port 49864 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49765 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49853 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49796 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49709 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49829 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49706 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49826 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49704 |
Source: unknown | Network traffic detected: HTTP traffic on port 49754 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49703 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49824 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49702 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49823 |
Source: unknown | Network traffic detected: HTTP traffic on port 49771 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49701 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49788 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49787 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49786 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49785 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49784 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49783 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49782 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49781 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49780 |
Source: unknown | Network traffic detected: HTTP traffic on port 49785 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49807 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49701 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49776 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49713 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49791 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49759 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49753 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49779 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49778 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49776 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49774 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49772 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49771 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49770 |
Source: unknown | Network traffic detected: HTTP traffic on port 49742 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49780 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49851 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49769 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49768 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49766 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49765 |
Source: unknown | Network traffic detected: HTTP traffic on port 49758 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49764 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49763 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49762 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49761 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49760 |
Source: unknown | Network traffic detected: HTTP traffic on port 49840 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49702 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49741 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49857 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49764 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49770 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49801 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49824 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49759 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49758 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49757 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49756 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49755 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49754 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49753 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49752 |
Source: unknown | Network traffic detected: HTTP traffic on port 49730 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49751 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49750 |
Source: unknown | Network traffic detected: HTTP traffic on port 49835 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49786 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49829 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49749 |
Source: unknown | Network traffic detected: HTTP traffic on port 49846 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49792 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49866 |
Source: unknown | Network traffic detected: HTTP traffic on port 49781 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49769 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49826 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49717 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49866 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49728 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49763 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49855 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49700 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49752 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49861 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49735 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49706 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49712 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49787 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49729 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49793 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49831 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49751 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49774 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49782 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49757 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49734 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49796 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49795 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49794 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49793 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49792 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49791 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49790 |
Source: unknown | Network traffic detected: HTTP traffic on port 49740 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49856 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49768 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49723 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49789 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49700 |
Source: unknown | Network traffic detected: HTTP traffic on port 49710 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49779 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49727 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49859 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49704 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49762 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49833 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49788 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49794 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49809 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49807 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49806 |
Source: unknown | Network traffic detected: HTTP traffic on port 443 -> 49801 |
Source: unknown | Network traffic detected: HTTP traffic on port 49756 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49783 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49854 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49809 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49860 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49778 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49755 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49761 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49744 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49832 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49716 -> 443 |
Source: unknown | Network traffic detected: HTTP traffic on port 49750 -> 443 |
Source: 9frujh3fhU.exe, 00000000.00000003.320248521.0000000003C0A000.00000004.00000800.00020000.00000000.sdmp | String found in binary or memory: http://47.98.224.91/ |
Source: c_login_2[1].js0.0.dr, c_login_2[1].js.0.dr | String found in binary or memory: http://dldir2.qq.com/invc/xfspeed/qqpcmgr/clinic/image/tipsicon_qq.png |
Source: 9frujh3fhU.exe, 00000000.00000003.270389324.0000000002B43000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270351327.0000000002B29000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.267261560.00000000026A9000.00000004.00000800.00020000.00000000.sdmp, xplib.fne.0.dr, krnln.fnr.0.dr, shell.fne.0.dr | String found in binary or memory: http://dywt.com.cn |
Source: 9frujh3fhU.exe, 00000000.00000003.267916539.0000000002844000.00000004.00000800.00020000.00000000.sdmp, dp1.fne.0.dr | String found in binary or memory: http://dywt.com.cn/RSATool2v14.rar |
Source: 9frujh3fhU.exe, 00000000.00000003.270389324.0000000002B43000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270351327.0000000002B29000.00000004.00000800.00020000.00000000.sdmp, xplib.fne.0.dr, shell.fne.0.dr | String found in binary or memory: http://dywt.com.cnservice |
Source: c_login_2[1].js0.0.dr, c_login_2[1].js.0.dr | String found in binary or memory: http://im.qq.com/macqq/index.shtml#im.qqformac.plusdown |
Source: xlogin[1].htm.0.dr | String found in binary or memory: http://im.qq.com/mobileqq/#from=login |
Source: c_login_2[1].js0.0.dr, c_login_2[1].js.0.dr | String found in binary or memory: http://im.qq.com/qq/2013/ |
Source: c_login_2[1].js.0.dr | String found in binary or memory: http://isdspeed.qq.com/cgi-bin/r.cgi? |
Source: 9frujh3fhU.exe, 00000000.00000003.269480228.00000000029C0000.00000004.00000800.00020000.00000000.sdmp, eAPI.fne.0.dr | String found in binary or memory: http://www.baidu.com |
Source: 9frujh3fhU.exe, 00000000.00000003.269480228.00000000029C0000.00000004.00000800.00020000.00000000.sdmp, eAPI.fne.0.dr | String found in binary or memory: http://www.baidu.comtest |
Source: 9frujh3fhU.exe, 00000000.00000003.269828507.0000000002A47000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270370778.0000000002B34000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.269636782.0000000002A0D000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.268105756.0000000002876000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.268960881.0000000002991000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.269480228.00000000029C0000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.267916539.0000000002844000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270313479.0000000002B13000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270172411.0000000002ADE000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270096311.0000000002AC2000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.268005920.0000000002864000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.267683859.00000000027E4000.00000004.00000800.00020000.00000000.sdmp, eAPI.fne.0.dr, iext3.fne.0.dr, dp1.fne.0.dr, EThread.fne.0.dr, iext6.fne.0.dr, spec.fne.0.dr, commobj.fne.0.dr, internet.fne.0.dr, iconv.fne.0.dr | String found in binary or memory: http://www.eyuyan.com |
Source: 9frujh3fhU.exe, 00000000.00000003.270389324.0000000002B43000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270415388.0000000002B56000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270140276.0000000002AD9000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.267982687.000000000285F000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270370778.0000000002B34000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.269789074.0000000002A33000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270076253.0000000002AB1000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.269302617.00000000029B7000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.268819465.0000000002959000.00000004.00000800.00020000.00000000.sdmp, dp1.fne.0.dr, EThread.fne.0.dr, iext6.fne.0.dr, commobj.fne.0.dr, xplib.fne.0.dr, internet.fne.0.dr, iconv.fne.0.dr, iext2.fne.0.dr, shell.fne.0.dr | String found in binary or memory: http://www.eyuyan.comDVarFileInfo$ |
Source: 9frujh3fhU.exe, 00000000.00000003.269828507.0000000002A47000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270370778.0000000002B34000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.269636782.0000000002A0D000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.268105756.0000000002876000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.268960881.0000000002991000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.269480228.00000000029C0000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.267916539.0000000002844000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270313479.0000000002B13000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270172411.0000000002ADE000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.270096311.0000000002AC2000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.268005920.0000000002864000.00000004.00000800.00020000.00000000.sdmp, 9frujh3fhU.exe, 00000000.00000003.267683859.00000000027E4000.00000004.00000800.00020000.00000000.sdmp, eAPI.fne.0.dr, iext3.fne.0.dr, dp1.fne.0.dr, EThread.fne.0.dr, iext6.fne.0.dr, spec.fne.0.dr, commobj.fne.0.dr, internet.fne.0.dr, iconv.fne.0.dr | String found in binary or memory: http://www.eyuyan.comservice |
Source: 9frujh3fhU.exe, 00000000.00000003.262403225.00000000022AE000.00000004.00001000.00020000.00000000.sdmp | String found in binary or memory: http://www.ip138.com |
Source: 9frujh3fhU.exe, 00000000.00000003.270471184.0000000002B5B000.00000004.00000800.00020000.00000000.sdmp, Crypto.dll.0.dr | String found in binary or memory: http://www.winimage.com/zLibDll |
Source: drag_ele[1].htm.0.dr | String found in binary or memory: https://captcha.gtimg.com/1/dy-ele.3c69003f.js |
Source: c_login_2[1].js.0.dr | String found in binary or memory: https://huatuospeed.weiyun.com/cgi-bin/r.cgi? |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://localhost.ptlogin2 |
Source: c_login_2[1].js0.0.dr, c_login_2[1].js.0.dr | String found in binary or memory: https://localhost.ptlogin2. |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://localhost.sec |
Source: c_login_2[1].js0.0.dr, c_login_2[1].js.0.dr | String found in binary or memory: https://localhost.sec.qq.com: |
Source: c_login_2[1].js0.0.dr, c_login_2[1].js.0.dr | String found in binary or memory: https://pay.qq.com/qqvip/index.shtml?aid=vip.gongneng.other.red.dengluweb_wording2_open |
Source: c_login_2[1].js0.0.dr, c_login_2[1].js.0.dr | String found in binary or memory: https://ping.huatuo.qq.com/ |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://pre.cdn-go.cn/ |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://pre.cdn-go.cn/qq-web/any.ptlogin2.qq.com/33d4907a |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://qq-web-legacy.cdn-go.cn/any.ptlogin2.qq.com/v1.38.0 |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://qq-web-legacy.cdn-go.cn/any.ptlogin2.qq.com/v1.38.0/ptlogin/js/ |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://qq-web-legacy.cdn-go.cn/any.ptlogin2.qq.com/v1.38.0/ptlogin/v4/style/theme/theme_0.css |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://qq-web.cdn-go.cn/ |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://report.qqweb.qq.com/report/007?app= |
Source: c_login_2[1].js.0.dr | String found in binary or memory: https://ssl.ptlogin2. |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://ssl.ptlogin2.qq.com/j_newreg_url |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://ssl.ptlogin2.qq.com/ptui_forgetpwd |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://support.qq.com/products/14800 |
Source: drag_ele[1].htm.0.dr | String found in binary or memory: https://tam.cdn-go.cn/aegis-sdk/latest/aegis.min.js |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://ui.ptlogin2.qq.com/cgi-bin/report?id=301240 |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://ui.ptlogin2.qq.com/style.ssl/40 |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://ui.ptlogin2.qq.com/style/0/images/load.gif |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://ui.ptlogin2.qq.com/style/11/images/icon_24_c_3.png |
Source: xlogin[1].htm.0.dr | String found in binary or memory: https://ui.ptlogin2.qq.com/style/11/images/icon_3.png |
Source: c_login_2[1].js0.0.dr, c_login_2[1].js.0.dr | String found in binary or memory: https://ui.ptlogin2.qq.com/style/34/images/icon_5.png) |
Source: global traffic | HTTP traffic detected: GET /cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2F HTTP/1.1Accept: */*Accept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: xui.ptlogin2.qq.comConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /ptlogin/v4/style/40/images/logo.png HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: imgcache.qq.comConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /any.ptlogin2.qq.com/v1.38.0/ptlogin/v4/style/theme/theme_0.css HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: qq-web-legacy.cdn-go.cnConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /ptlogin/v4/style/40/images/icon_3_tiny.png HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: imgcache.qq.comConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /any.ptlogin2.qq.com/v1.38.0/ptlogin/js/c_login_2.js HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: qq-web-legacy.cdn-go.cnConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /any.ptlogin2.qq.com/v1.38.0/ptlogin/v4/style/40/images/go_left_ie.png HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: qq-web-legacy.cdn-go.cnConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /any.ptlogin2.qq.com/v1.38.0/ptlogin/v4/style/40/images/go_right_ie.png HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: qq-web-legacy.cdn-go.cnConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /report/007?app=qfingerprint-device-id&url=device-id%2Funsupport&type=1&httpcode=undefined&retcode=9999&cost=10086 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: report.qqweb.qq.comConnection: Keep-AliveCookie: _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /TCaptcha.js HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.captcha.qq.comConnection: Keep-AliveCookie: _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /any.ptlogin2.qq.com/v1.38.0/ptlogin/v4/style/20/images/shouQ_v2/qr_tips.png HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: qq-web-legacy.cdn-go.cnConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /style/0/images/load.gif HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ui.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /cgi-bin/report?id=2732844 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ui.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /pt_fetch_dev_uin?r=0.5001608255703328&pt_guid_token=1561506891 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /ptqrshow?appid=715030901&e=2&l=M&s=3&d=72&v=4&t=0.046068860443376936&daid=73&pt_3rd_aid=0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /1/tcaptcha-frame.32287577.js HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: captcha.gtimg.comConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901500106&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /template/drag_ele.html HTTP/1.1Accept: image/gif, image/jpeg, image/pjpeg, application/x-ms-application, application/xaml+xml, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: t.captcha.qq.comConnection: Keep-AliveCookie: _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /js/c_login_2.js?v=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: xui.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /1/dy-jy.js HTTP/1.1Accept: */*Referer: https://t.captcha.qq.com/template/drag_ele.htmlAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: captcha.gtimg.comConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901503144&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /service/update2/crx?os=win&arch=x64&os_arch=x86_64&nacl_arch=x86-64&prod=chromecrx&prodchannel=&prodversion=104.0.5112.81&lang=en-US&acceptformat=crx3&x=id%3Dnmmhkkegccagdldgiimedpiccmgmieda%26v%3D0.0.0.0%26installedby%3Dother%26uc%26ping%3Dr%253D-1%2526e%253D1 HTTP/1.1Host: clients2.google.comConnection: keep-aliveX-Goog-Update-Interactivity: fgX-Goog-Update-AppId: nmmhkkegccagdldgiimedpiccmgmiedaX-Goog-Update-Updater: chromecrx-104.0.5112.81Sec-Fetch-Site: noneSec-Fetch-Mode: no-corsSec-Fetch-Dest: emptyUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /aegis-sdk/latest/aegis.min.js HTTP/1.1Accept: */*Referer: https://t.captcha.qq.com/template/drag_ele.htmlAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: tam.cdn-go.cnConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /1/dy-ele.3c69003f.js HTTP/1.1Accept: */*Referer: https://t.captcha.qq.com/template/drag_ele.htmlAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: captcha.gtimg.comConnection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /p?k=1FghAza71RuNqYzfZG0bPJ--MaE-e*b8&f=715030901 HTTP/1.1Host: txz.qq.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.9Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentsec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901506137&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /mobileqq/ HTTP/1.1Host: im.qq.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.9Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentsec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzact/act/external/tiqq/imqq/mobileqq/fullpage/fullpage.css HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzact/act/external/tiqq/imqq/mobileqq/fullpage/fullpage.min.js HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901509141&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /AegisReport/v1.4.2/index.js HTTP/1.1Host: framework.cdn-go.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /im.qq.com_hybrid_h5_v2/f14de735/app/mobileqq/dist/cdn/index.css HTTP/1.1Host: qq-web.cdn-go.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: text/css,*/*;q=0.1Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /im.qq.com_hybrid_h5_v2/f14de735/app/mobileqq/dist/cdn/index.bundle.js HTTP/1.1Host: qq-web.cdn-go.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /q-opentelemetry/v1.1.1/index.min.js HTTP/1.1Host: framework.cdn-go.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/node-webpack/runtime/dll/vue/dist/vue.dll.js HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20200611205322_d3e341.png HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20210718162657_817328.png HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20200611205039_484d82.png HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qqweb/QQ_1/picture2/8923-PC%E6%A0%87%E9%A2%98.png HTTP/1.1Host: downv6.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qqweb/QQ_1/picture2/898pc%E5%89%8D%E6%99%AF.png HTTP/1.1Host: downv6.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qqweb/QQ_1/%20picture/%E6%B8%B8%E6%88%8F%E6%B6%88%E6%81%AF%E7%9B%92%E5%AD%90-pc%E6%A0%87%E9%A2%98%20%E5%AE%98%E7%BD%9101.png HTTP/1.1Host: downv6.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qqweb/QQ_1/%20picture/%E6%B8%B8%E6%88%8F%E6%B6%88%E6%81%AF%E7%9B%92%E5%AD%90-pc%E5%89%8D%E6%99%AF01.png HTTP/1.1Host: downv6.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qqweb/QQ_1/%20picture/%E7%BE%8E%E4%BD%93-pc%E6%A0%87%E9%A2%9801.png HTTP/1.1Host: downv6.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qqweb/QQ_1/%20picture/%E7%BE%8E%E4%BD%93-pc%E5%89%8D%E6%99%AF1.png HTTP/1.1Host: downv6.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20210718101425_4d5e30.png HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20210718162711_f33a7a.png HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20210718101503_3b91cd.png HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /im.qq.com_hybrid_h5_v2/f14de735/app/mobileqq/dist/cdn/assets/images/mblogo_black.png HTTP/1.1Host: qq-web.cdn-go.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://qq-web.cdn-go.cn/im.qq.com_hybrid_h5_v2/f14de735/app/mobileqq/dist/cdn/index.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /im.qq.com_hybrid_h5_v2/f14de735/app/mobileqq/dist/cdn/assets/images/more.png HTTP/1.1Host: qq-web.cdn-go.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://qq-web.cdn-go.cn/im.qq.com_hybrid_h5_v2/f14de735/app/mobileqq/dist/cdn/index.cssAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20210718101332_d9fcce.png HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901512149&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/%20picture/%E7%BE%8E%E4%BD%93-pc%E6%A0%87%E9%A2%9801.png?mkey=6397568d541112c6&f=0000&cip=84.17.52.51&proto=https&access_type= HTTP/1.1Host: b2528788b3c06a86c07f921016971ea8.dlied1.cdntips.netConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/picture2/898pc%E5%89%8D%E6%99%AF.png?mkey=6397568d541112c6&f=0000&cip=84.17.52.51&proto=https&access_type= HTTP/1.1Host: d808f46571e9607cf73a3f989a6160ab.dlied1.cdntips.netConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/%20picture/%E7%BE%8E%E4%BD%93-pc%E5%89%8D%E6%99%AF1.png?mkey=6397568d541112c6&f=0000&cip=84.17.52.51&proto=https&access_type= HTTP/1.1Host: d808f46571e9607cf73a3f989a6160ab.dlied1.cdntips.netConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/%20picture/%E6%B8%B8%E6%88%8F%E6%B6%88%E6%81%AF%E7%9B%92%E5%AD%90-pc%E5%89%8D%E6%99%AF01.png?mkey=6397568d541112c6&f=0000&cip=84.17.52.51&proto=https&access_type= HTTP/1.1Host: d808f46571e9607cf73a3f989a6160ab.dlied1.cdntips.netConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /collect/pv?id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=4&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/%20picture/%E6%B8%B8%E6%88%8F%E6%B6%88%E6%81%AF%E7%9B%92%E5%AD%90-pc%E6%A0%87%E9%A2%98%20%E5%AE%98%E7%BD%9101.png?mkey=6397568d541112c6&f=0000&cip=84.17.52.51&proto=https&access_type= HTTP/1.1Host: 6f6d8e2f241a67ded21bcc450bf8fefc.dlied1.cdntips.netConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qqweb/QQ_1/%20picture/download/%E6%99%BA%E8%83%BD%E7%BE%8E%E9%A2%9Cpc%E6%A0%87%E9%A2%98.png HTTP/1.1Host: downv6.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qqweb/QQ_1/%20picture/download/%E6%99%BA%E8%83%BD%E7%BE%8E%E9%A2%9Cpc%E5%8A%9F%E8%83%BD%E9%A1%B5.png HTTP/1.1Host: downv6.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qqweb/QQ_1/%20picture/%E6%B8%B8%E6%88%8F%E6%B6%88%E6%81%AF%E7%9B%92%E5%AD%90-8828pc%E8%83%8C%E6%99%AF01.png HTTP/1.1Host: downv6.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qqweb/QQ_1/%20picture/%E7%BE%8E%E4%BD%93-pc%E8%83%8C%E6%99%AF01.png HTTP/1.1Host: downv6.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qqweb/QQ_1/%20picture/download/%E6%99%BA%E8%83%BD%E7%BE%8E%E9%A2%9Cpc%E8%83%8C%E6%99%AF.png HTTP/1.1Host: downv6.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901515186&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20210718101437_935e4e.png HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901518514&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/%20picture/download/%E6%99%BA%E8%83%BD%E7%BE%8E%E9%A2%9Cpc%E6%A0%87%E9%A2%98.png?mkey=6397568e541112c6&f=0000&cip=84.17.52.51&proto=https&access_type= HTTP/1.1Host: bda57a0f0b2a391f86f68b8bae4d5298.dlied1.cdntips.netConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /collect/whitelist?id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=3&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzact/act/external/tiqq/logo.png HTTP/1.1Host: qzonestyle.gtimg.cnConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /speed/custom?payload=%7B%22custom%22%3A%5B%7B%22name%22%3A%22headStart%22%2C%22duration%22%3A6221%7D%2C%7B%22name%22%3A%22bodyEnd%22%2C%22duration%22%3A3324%7D%2C%7B%22name%22%3A%22scriptEnd%22%2C%22duration%22%3A4167%7D%5D%7D&id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=3&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901521522&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /speed/performance?dnsLookup=305&tcp=658&ssl=657&ttfb=348&contentDownload=214&domParse=4258&resourceDownload=1070&firstScreenTiming=9539&id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=3&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901524512&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzact/act/external/tiqq/logo.png HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: qzonestyle.gtimg.cn |
Source: global traffic | HTTP traffic detected: GET /speed/custom?payload=%7B%22custom%22%3A%5B%7B%22name%22%3A%22unloadEventStart%22%2C%22duration%22%3A0%7D%2C%7B%22name%22%3A%22unloadEventEnd%22%2C%22duration%22%3A0%7D%2C%7B%22name%22%3A%22redirectStart%22%2C%22duration%22%3A0%7D%2C%7B%22name%22%3A%22redirectEnd%22%2C%22duration%22%3A0%7D%2C%7B%22name%22%3A%22fetchStart%22%2C%22duration%22%3A4668%7D%5D%7D&id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=3&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901527514&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /speed/custom?payload=%7B%22custom%22%3A%5B%7B%22name%22%3A%22domainLookupStart%22%2C%22duration%22%3A4750%7D%2C%7B%22name%22%3A%22domainLookupEnd%22%2C%22duration%22%3A5055%7D%2C%7B%22name%22%3A%22connectStart%22%2C%22duration%22%3A5055%7D%2C%7B%22name%22%3A%22connectEnd%22%2C%22duration%22%3A5713%7D%2C%7B%22name%22%3A%22secureConnectionStart%22%2C%22duration%22%3A5056%7D%5D%7D&id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=3&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /speed/custom?payload=%7B%22custom%22%3A%5B%7B%22name%22%3A%22requestStart%22%2C%22duration%22%3A5713%7D%2C%7B%22name%22%3A%22responseStart%22%2C%22duration%22%3A6061%7D%2C%7B%22name%22%3A%22responseEnd%22%2C%22duration%22%3A6275%7D%2C%7B%22name%22%3A%22domLoading%22%2C%22duration%22%3A6131%7D%2C%7B%22name%22%3A%22domInteractive%22%2C%22duration%22%3A10389%7D%5D%7D&id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=3&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901530511&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /speed/custom?payload=%7B%22custom%22%3A%5B%7B%22name%22%3A%22domContentLoadedEventStart%22%2C%22duration%22%3A10820%7D%2C%7B%22name%22%3A%22domContentLoadedEventEnd%22%2C%22duration%22%3A10820%7D%2C%7B%22name%22%3A%22domComplete%22%2C%22duration%22%3A0%7D%2C%7B%22name%22%3A%22loadEventStart%22%2C%22duration%22%3A0%7D%2C%7B%22name%22%3A%22loadEventEnd%22%2C%22duration%22%3A0%7D%5D%7D&id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=3&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901533512&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901536517&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901539516&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901542509&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /speed/custom?payload=%7B%22custom%22%3A%5B%7B%22name%22%3A%22unloadEventStart%22%2C%22duration%22%3A0%7D%2C%7B%22name%22%3A%22unloadEventEnd%22%2C%22duration%22%3A0%7D%2C%7B%22name%22%3A%22redirectStart%22%2C%22duration%22%3A0%7D%2C%7B%22name%22%3A%22redirectEnd%22%2C%22duration%22%3A0%7D%2C%7B%22name%22%3A%22fetchStart%22%2C%22duration%22%3A4668%7D%5D%7D&id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=3&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901545516&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /speed/custom?payload=%7B%22custom%22%3A%5B%7B%22name%22%3A%22domainLookupStart%22%2C%22duration%22%3A4750%7D%2C%7B%22name%22%3A%22domainLookupEnd%22%2C%22duration%22%3A5055%7D%2C%7B%22name%22%3A%22connectStart%22%2C%22duration%22%3A5055%7D%2C%7B%22name%22%3A%22connectEnd%22%2C%22duration%22%3A5713%7D%2C%7B%22name%22%3A%22secureConnectionStart%22%2C%22duration%22%3A5056%7D%5D%7D&id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=3&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901548509&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /speed/custom?payload=%7B%22custom%22%3A%5B%7B%22name%22%3A%22requestStart%22%2C%22duration%22%3A5713%7D%2C%7B%22name%22%3A%22responseStart%22%2C%22duration%22%3A6061%7D%2C%7B%22name%22%3A%22responseEnd%22%2C%22duration%22%3A6275%7D%2C%7B%22name%22%3A%22domLoading%22%2C%22duration%22%3A6131%7D%2C%7B%22name%22%3A%22domInteractive%22%2C%22duration%22%3A10389%7D%5D%7D&id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=3&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /speed/custom?payload=%7B%22custom%22%3A%5B%7B%22name%22%3A%22domContentLoadedEventStart%22%2C%22duration%22%3A10820%7D%2C%7B%22name%22%3A%22domContentLoadedEventEnd%22%2C%22duration%22%3A10820%7D%2C%7B%22name%22%3A%22domComplete%22%2C%22duration%22%3A17762%7D%2C%7B%22name%22%3A%22loadEventStart%22%2C%22duration%22%3A17762%7D%2C%7B%22name%22%3A%22loadEventEnd%22%2C%22duration%22%3A17763%7D%5D%7D&id=RiaWqsnTIQMHrqkPoT&uin=&version=1.37.2&aid=f705f641-ef4a-4b76-a319-02fe87c571e0&env=production&platform=3&netType=3&vp=1280%20*%20913&sr=1280%20*%201024&sessionId=session-1670901510717&from=https%3A%2F%2Fim.qq.com%2Fmobileqq%2F&referer= HTTP/1.1Host: aegis.qq.comConnection: keep-alivesec-ch-ua: "Chromium";v="104", " Not A;Brand";v="99", "Google Chrome";v="104"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Origin: https://im.qq.comSec-Fetch-Site: same-siteSec-Fetch-Mode: corsSec-Fetch-Dest: emptyReferer: https://im.qq.com/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901551549&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901554549&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901557541&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901560549&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /ptqrlogin?u1=https%3A%2F%2Fqun.qq.com%2F&ptqrtoken=1414567034&ptredirect=1&h=1&t=1&g=1&from_ui=1&ptlang=2052&action=0-0-1670901563542&js_ver=22112816&js_type=1&login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY&pt_uistyle=40&aid=715030901&daid=73&&o1vId=&pt_js_version=v1.38.0 HTTP/1.1Accept: */*Referer: https://xui.ptlogin2.qq.com/cgi-bin/xlogin?appid=715030901&daid=73&pt_no_auth=1&s_url=https%3A%2F%2Fqun.qq.com%2FAccept-Language: en-USAccept-Encoding: gzip, deflateUser-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.2; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)Host: ssl.ptlogin2.qq.comConnection: Keep-AliveCookie: pt_login_sig=7nxYuiWCVCjL068V7POiG8pcmZIu64qyHB2j3e5dj2kiFR11EbJ6N7eanKSft1cY; pt_clientip=cdab54113433af96; pt_serverip=551a0991b2d20e97; pt_local_token=-226223853; uikey=136508b8393db4782c3a8b2ea1a4703909dee7886bc69972f341e8b10ddc56df; pt_guid_sig=9d1d472b2245e391707de2480fedcdd1794837983c23933873c114d11593dca0; qrsig=6cd011ae282d81e157fb4b6497921146fded44166abfd34c5f710b20980b24c73df6a8d130304c772d20dcd630d05e831d114d485d0577e5; _qpsvr_localtk=0.38438448347480686 |
Source: global traffic | HTTP traffic detected: GET /chajian.txt HTTP/1.1Accept: */*User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)Host: 47.98.224.91Cache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /config.zip HTTP/1.1Accept: */*User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)Host: 47.98.224.91Cache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /config.zip HTTP/1.1Accept: */*User-Agent: Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0)Host: 47.98.224.91Cache-Control: no-cache |
Source: global traffic | HTTP traffic detected: GET /p?k=1FghAza71RuNqYzfZG0bPJ--MaE-e*b8&f=715030901 HTTP/1.1Host: txz.qq.comConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/104.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.9Accept-Encoding: gzip, deflateAccept-Language: en-US,en;q=0.9 |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20200611205322_d3e341.png HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: qzonestyle.gtimg.cn |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/picture2/8923-PC%E6%A0%87%E9%A2%98.png?mkey=63975670541112c6&f=0000&cip=84.17.52.51&proto=http&access_type= HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: 119.28.164.31Connection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/picture2/898pc%E5%89%8D%E6%99%AF.png?mkey=63975670541112c6&f=0000&cip=84.17.52.51&proto=http&access_type= HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: 119.28.164.31Connection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20210718101425_4d5e30.png HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: qzonestyle.gtimg.cn |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/%20picture/%E6%B8%B8%E6%88%8F%E6%B6%88%E6%81%AF%E7%9B%92%E5%AD%90-pc%E5%89%8D%E6%99%AF01.png?mkey=63975673541112c6&f=0000&cip=84.17.52.51&proto=http&access_type= HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: 203.205.136.163Connection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/%20picture/%E6%B8%B8%E6%88%8F%E6%B6%88%E6%81%AF%E7%9B%92%E5%AD%90-pc%E6%A0%87%E9%A2%98%20%E5%AE%98%E7%BD%9101.png?mkey=63975673541112c6&f=0000&cip=84.17.52.51&proto=http&access_type= HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: 203.205.136.163Connection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/%20picture/%E7%BE%8E%E4%BD%93-pc%E5%89%8D%E6%99%AF1.png?mkey=63975673541112c6&f=0000&cip=84.17.52.51&proto=http&access_type= HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: 119.28.164.31Connection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20210718162657_817328.png HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: qzonestyle.gtimg.cn |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/%20picture/%E7%BE%8E%E4%BD%93-pc%E6%A0%87%E9%A2%9801.png?mkey=63975673541112c6&f=0000&cip=84.17.52.51&proto=http&access_type= HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: 119.28.164.223Connection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/%20picture/download/%E6%99%BA%E8%83%BD%E7%BE%8E%E9%A2%9Cpc%E5%8A%9F%E8%83%BD%E9%A1%B5.png?mkey=63975673541112c6&f=0000&cip=84.17.52.51&proto=http&access_type= HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: 203.205.136.163Connection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20210718162711_f33a7a.png HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: qzonestyle.gtimg.cn |
Source: global traffic | HTTP traffic detected: GET /downv6.qq.com/qqweb/QQ_1/%20picture/download/%E6%99%BA%E8%83%BD%E7%BE%8E%E9%A2%9Cpc%E6%A0%87%E9%A2%98.png?mkey=63975673541112c6&f=0000&cip=84.17.52.51&proto=http&access_type= HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: 203.205.137.31Connection: Keep-Alive |
Source: global traffic | HTTP traffic detected: GET /qzone/qzactStatics/imgs/20210718101503_3b91cd.png HTTP/1.1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36Host: qzonestyle.gtimg.cn |