HTTP/1.1 200 OK Cache-Control: private Content-Length: 0 X-AspNet-Version: 4.0.30319 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Frame-Options: sameorigin Content-Security-Policy: frame-ancestors 'self' default-src 'self' frame-src 'self' *.laohu8.com;img-src 'self' *.laohu8.com *.baidu.com *.bdimg.com data: script-src 'self' *.baidu.com *.zthx.com Accept-Charset: utf-8 Accept-Encoding: gzip, deflate Strict-Transport-Security: max-age=63072000; includeSubdomains; preload X-Permitted-Cross-Domain-Policies: master-only X-Download-Options: noopen Referrer-Policy: strict-origin-when-cross-origin Date: Tue, 14 Apr 2026 15:15:28 GMT