URI |
HTTP数据 |
URL专业沙箱检测 -> http://scriptcc.cc/ |
GET / HTTP/1.1
Accept: */*
Accept-Language: zh-cn
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Accept-Encoding: gzip, deflate
Host: scriptcc.cc
Connection: Keep-Alive
|
URL专业沙箱检测 -> http://ww1.scriptcc.cc/?subid1=0e15e0e6-292a-11ed-bb35-6b7eede63c31 |
GET /?subid1=0e15e0e6-292a-11ed-bb35-6b7eede63c31 HTTP/1.1
Accept: */*
Accept-Language: zh-cn
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Accept-Encoding: gzip, deflate
Host: ww1.scriptcc.cc
Connection: Keep-Alive
Cookie: sid=0e15e0e6-292a-11ed-bb35-6b7eede63c31
|
URL专业沙箱检测 -> http://acroipm.adobe.com/11/rdr/CHS/win/nooem/none/message.zip |
GET /11/rdr/CHS/win/nooem/none/message.zip HTTP/1.1
Accept: */*
If-Modified-Since: Mon, 08 Nov 2017 08:44:36 GMT
User-Agent: IPM
Host: acroipm.adobe.com
Connection: Keep-Alive
Cache-Control: no-cache
|
URL专业沙箱检测 -> http://d1lxhc4jvstzrp.cloudfront.net/scripts/js3.js |
GET /scripts/js3.js HTTP/1.1
Accept: */*
Referer: http://ww1.scriptcc.cc/?subid1=0e15e0e6-292a-11ed-bb35-6b7eede63c31
Accept-Language: zh-CN
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Accept-Encoding: gzip, deflate
Host: d1lxhc4jvstzrp.cloudfront.net
Connection: Keep-Alive
|
URL专业沙箱检测 -> http://ww1.scriptcc.cc/track.php?domain=scriptcc.cc&toggle=browserjs&uid=MTY2MTk0OTY0NS41MDA3OmJiOTlmNzMxNjhlNmJhNWJlZTMzZTNhNTNjNzZjNTM3NjIzYTVhZWM5NzZjMzE4NWI1OGYxMTRkNTU5M2FlYjc6NjMwZjU2Y2Q3YTNlMQ%3D%3D |
GET /track.php?domain=scriptcc.cc&toggle=browserjs&uid=MTY2MTk0OTY0NS41MDA3OmJiOTlmNzMxNjhlNmJhNWJlZTMzZTNhNTNjNzZjNTM3NjIzYTVhZWM5NzZjMzE4NWI1OGYxMTRkNTU5M2FlYjc6NjMwZjU2Y2Q3YTNlMQ%3D%3D HTTP/1.1
Accept: */*
Accept-Language: zh-cn
Referer: http://ww1.scriptcc.cc/?subid1=0e15e0e6-292a-11ed-bb35-6b7eede63c31
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Host: ww1.scriptcc.cc
Connection: Keep-Alive
Cookie: sid=0e15e0e6-292a-11ed-bb35-6b7eede63c31
|
URL专业沙箱检测 -> http://ww1.scriptcc.cc/ls.php |
POST /ls.php HTTP/1.1
Accept: */*
Accept-Language: zh-cn
Referer: http://ww1.scriptcc.cc/?subid1=0e15e0e6-292a-11ed-bb35-6b7eede63c31
Content-Type: application/x-www-form-urlencoded; charset=UTF-8
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Host: ww1.scriptcc.cc
Content-Length: 2186
Connection: Keep-Alive
Cache-Control: no-cache
Cookie: sid=0e15e0e6-292a-11ed-bb35-6b7eede63c31
|
URL专业沙箱检测 -> http://ww1.scriptcc.cc/favicon.ico |
GET /favicon.ico HTTP/1.1
Accept: */*
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Host: ww1.scriptcc.cc
Connection: Keep-Alive
Cookie: sid=0e15e0e6-292a-11ed-bb35-6b7eede63c31
|
URL专业沙箱检测 -> http://144.dragonparking.com/?site=scriptcc.cc&t=1661949645&s=d726b6ff13fde4beb8281f705788e72a |
GET /?site=scriptcc.cc&t=1661949645&s=d726b6ff13fde4beb8281f705788e72a HTTP/1.1
Accept: application/x-ms-application, image/jpeg, application/xaml+xml, image/gif, image/pjpeg, application/x-ms-xbap, application/vnd.ms-excel, application/vnd.ms-powerpoint, application/msword, */*
Accept-Language: zh-CN
User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; Media Center PC 6.0; .NET4.0C; .NET4.0E)
Accept-Encoding: gzip, deflate
Host: 144.dragonparking.com
Connection: Keep-Alive
|
URL专业沙箱检测 -> http://r3.i.lencr.org/ |
GET / HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: r3.i.lencr.org
|
URL专业沙箱检测 -> http://x1.i.lencr.org/ |
GET / HTTP/1.1
Connection: Keep-Alive
Accept: */*
User-Agent: Microsoft-CryptoAPI/6.1
Host: x1.i.lencr.org
|