File name:

Virtual DJ - CHIP Installer _0y3Sv.exe

Full analysis: https://app.any.run/tasks/a6b0e0a3-615c-4335-a333-872694f05f18
Verdict: Malicious activity
Analysis date: April 24, 2025, 10:28:11
OS: Windows 10 Professional (build: 19044, 64 bit)
Tags:
delphi
Indicators:
MIME: application/vnd.microsoft.portable-executable
File info: PE32+ executable (GUI) x86-64, for MS Windows, 11 sections
MD5:

F5980F17F44DA870072C5CE396EB01BF

SHA1:

22CE208ACB16875CDD9D42A794557A56068220C2

SHA256:

2F9079DF89E96A997A910F9243173AC60BFE625501452152F8AB281778E5696B

SSDEEP:

49152:xhx7dxx15qe01xtgx41J/StY/yuiYWLmgpaRZkDuZdTNACtn:JV1JALgvz4ACtn

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Reads security settings of Internet Explorer

      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
      • msiexec.exe (PID: 6148)
      • msiexec.exe (PID: 5756)
    • Executes as Windows Service

      • VSSVC.exe (PID: 6244)
    • Reads Microsoft Outlook installation path

      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
    • Searches for installed software

      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
    • Changes Internet Explorer settings (feature browser emulation)

      • msiexec.exe (PID: 6148)
    • Reads the Windows owner or organization settings

      • msiexec.exe (PID: 6148)
    • There is functionality for taking screenshot (YARA)

      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
    • Reads Internet Explorer settings

      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
  • INFO

    • Create files in a temporary directory

      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
    • The sample compiled with english language support

      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
    • Checks proxy server information

      • msiexec.exe (PID: 6752)
      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
      • slui.exe (PID: 2772)
    • Reads the software policy settings

      • msiexec.exe (PID: 6752)
      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
      • slui.exe (PID: 4776)
      • slui.exe (PID: 2772)
      • msiexec.exe (PID: 6148)
    • Creates files or folders in the user directory

      • msiexec.exe (PID: 6752)
      • msiexec.exe (PID: 6148)
      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
    • Compiled with Borland Delphi (YARA)

      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
    • Checks supported languages

      • msiexec.exe (PID: 6148)
      • msiexec.exe (PID: 5756)
      • virtualdj.exe (PID: 5280)
    • Reads the computer name

      • msiexec.exe (PID: 6148)
      • msiexec.exe (PID: 5756)
    • Reads the machine GUID from the registry

      • Virtual DJ - CHIP Installer _0y3Sv.exe (PID: 4784)
      • msiexec.exe (PID: 6148)
    • Manages system restore points

      • SrTasks.exe (PID: 1532)
    • Creates a software uninstall entry

      • msiexec.exe (PID: 6148)
    • Executable content was dropped or overwritten

      • msiexec.exe (PID: 6752)
    • Process checks computer location settings

      • msiexec.exe (PID: 5756)
    • Reads security settings of Internet Explorer

      • msiexec.exe (PID: 6752)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Generic Win/DOS Executable (49.6)
.exe | DOS Executable Generic (49.5)
.vxd | VXD Driver (0.7)

EXIF

EXE

MachineType: AMD AMD64
TimeStamp: 2022:04:16 09:34:08+00:00
ImageFileCharacteristics: Executable, Large address aware
PEType: PE32+
LinkerVersion: 8
CodeSize: 4237824
InitializedDataSize: 1083392
UninitializedDataSize: -
EntryPoint: 0x3f8020
OSVersion: 5.2
ImageVersion: 5.2
SubsystemVersion: 5.2
Subsystem: Windows GUI
FileVersionNumber: 1.0.100.6
ProductVersionNumber: 1.0.100.6
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: English (U.S.)
CharacterSet: Windows, Latin1
CompanyName: CHIP Digital GmbH
FileDescription: CHIP Secured Installer
FileVersion: 1.0.100.6
LegalCopyright: Copyright 2021 CHIP Digital GmbH
ProductName: LgInstall
ProductVersion: 1.0.100.6
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
147
Monitored processes
12
Malicious processes
1
Suspicious processes
0

Behavior graph

Click at the process to see the details
start virtual dj - chip installer _0y3sv.exe sppextcomobj.exe no specs slui.exe slui.exe msiexec.exe msiexec.exe no specs vssvc.exe no specs srtasks.exe no specs conhost.exe no specs msiexec.exe no specs virtualdj.exe no specs virtual dj - chip installer _0y3sv.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
744\??\C:\WINDOWS\system32\conhost.exe 0xffffffff -ForceV1C:\Windows\System32\conhost.exeSrTasks.exe
User:
SYSTEM
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Console Window Host
Exit code:
0
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\conhost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\shcore.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
1324"C:\Users\admin\AppData\Local\Temp\Virtual DJ - CHIP Installer _0y3Sv.exe" C:\Users\admin\AppData\Local\Temp\Virtual DJ - CHIP Installer _0y3Sv.exeexplorer.exe
User:
admin
Company:
CHIP Digital GmbH
Integrity Level:
MEDIUM
Description:
CHIP Secured Installer
Exit code:
3221226540
Version:
1.0.100.6
Modules
Images
c:\users\admin\appdata\local\temp\virtual dj - chip installer _0y3sv.exe
c:\windows\system32\ntdll.dll
1532C:\WINDOWS\system32\srtasks.exe ExecuteScopeRestorePoint /WaitForRestorePoint:11C:\Windows\System32\SrTasks.exemsiexec.exe
User:
SYSTEM
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Microsoft® Windows System Protection background tasks.
Exit code:
0
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\srtasks.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\user32.dll
2772C:\WINDOWS\System32\slui.exe -EmbeddingC:\Windows\System32\slui.exe
svchost.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Windows Activation Client
Exit code:
0
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\slui.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\user32.dll
4776"C:\WINDOWS\System32\SLUI.exe" RuleId=3482d82e-ca2c-4e1f-8864-da0267b484b2;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=TimerEventC:\Windows\System32\slui.exe
SppExtComObj.Exe
User:
NETWORK SERVICE
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Windows Activation Client
Exit code:
1
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\msxml6.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ondemandconnroutehelper.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\nsi.dll
c:\windows\system32\dhcpcsvc6.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\webio.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\winnsi.dll
4784"C:\Users\admin\AppData\Local\Temp\Virtual DJ - CHIP Installer _0y3Sv.exe" C:\Users\admin\AppData\Local\Temp\Virtual DJ - CHIP Installer _0y3Sv.exe
explorer.exe
User:
admin
Company:
CHIP Digital GmbH
Integrity Level:
HIGH
Description:
CHIP Secured Installer
Exit code:
0
Version:
1.0.100.6
Modules
Images
c:\windows\system32\urlmon.dll
c:\windows\system32\srvcli.dll
c:\windows\system32\msiso.dll
c:\windows\system32\wininet.dll
c:\windows\system32\ondemandconnroutehelper.dll
c:\windows\system32\mshtml.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\umpdc.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\cryptsp.dll
5008C:\WINDOWS\system32\SppExtComObj.exe -EmbeddingC:\Windows\System32\SppExtComObj.Exesvchost.exe
User:
NETWORK SERVICE
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
KMS Connection Broker
Exit code:
0
Version:
10.0.19041.3996 (WinBuild.160101.0800)
5280"C:\Program Files\VirtualDJ\virtualdj.exe" C:\Program Files\VirtualDJ\virtualdj.exemsiexec.exe
User:
admin
Company:
Atomix Productions
Integrity Level:
HIGH
Description:
VirtualDJ
Version:
8.5
Modules
Images
c:\program files\virtualdj\virtualdj.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\wldap32.dll
5756C:\Windows\syswow64\MsiExec.exe -Embedding 0BD3BD1862E3D7B24788B87048E7EC86 CC:\Windows\SysWOW64\msiexec.exemsiexec.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Windows® installer
Exit code:
0
Version:
5.0.19041.3636 (WinBuild.160101.0800)
Modules
Images
c:\windows\syswow64\msiexec.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\aclayers.dll
6148C:\WINDOWS\system32\msiexec.exe /VC:\Windows\System32\msiexec.exeservices.exe
User:
SYSTEM
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Windows® installer
Version:
5.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\msiexec.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\aclayers.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\win32u.dll
c:\windows\system32\gdi32.dll
Total events
18 125
Read events
17 821
Write events
284
Delete events
20

Modification events

(PID) Process:(4784) Virtual DJ - CHIP Installer _0y3Sv.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content
Operation:writeName:CachePrefix
Value:
(PID) Process:(4784) Virtual DJ - CHIP Installer _0y3Sv.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies
Operation:writeName:CachePrefix
Value:
Cookie:
(PID) Process:(4784) Virtual DJ - CHIP Installer _0y3Sv.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History
Operation:writeName:CachePrefix
Value:
Visited:
(PID) Process:(6148) msiexec.exeKey:HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VSS\Diag\SystemRestore
Operation:writeName:SrCreateRp (Enter)
Value:
48000000000000001DEB5FE003B5DB010418000068100000D50700000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
(PID) Process:(6148) msiexec.exeKey:HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VSS\Diag\SPP
Operation:writeName:SppGetSnapshots (Enter)
Value:
48000000000000001DEB5FE003B5DB010418000068100000D20700000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
(PID) Process:(6148) msiexec.exeKey:HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VSS\Diag\SPP
Operation:writeName:SppGetSnapshots (Leave)
Value:
4800000000000000BFD2A9E003B5DB010418000068100000D20700000100000000000000000000000000000000000000000000000000000000000000000000000000000000000000
(PID) Process:(6148) msiexec.exeKey:HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VSS\Diag\SPP
Operation:writeName:SppEnumGroups (Enter)
Value:
4800000000000000BFD2A9E003B5DB010418000068100000D10700000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
(PID) Process:(6148) msiexec.exeKey:HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VSS\Diag\SPP
Operation:writeName:SppEnumGroups (Leave)
Value:
4800000000000000D035ACE003B5DB010418000068100000D10700000100000000000000010000000000000000000000000000000000000000000000000000000000000000000000
(PID) Process:(6148) msiexec.exeKey:HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VSS\Diag\SPP
Operation:writeName:SppCreate (Enter)
Value:
48000000000000005F99AEE003B5DB010418000068100000D00700000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
(PID) Process:(6148) msiexec.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SPP
Operation:writeName:LastIndex
Value:
11
Executable files
1
Suspicious files
34
Text files
5
Unknown types
0

Dropped files

PID
Process
Filename
Type
4784Virtual DJ - CHIP Installer _0y3Sv.exeC:\Users\admin\AppData\Local\Temp\install_virtualdj_2024_b8225_pc_msi_642420251028233025476785\install_virtualdj_2024_b8225_pc_msi.parts
MD5:
SHA256:
4784Virtual DJ - CHIP Installer _0y3Sv.exeC:\Users\admin\AppData\Local\Temp\install_virtualdj_2024_b8225_pc_msi_642420251028233025476785\install_virtualdj_2024_b8225_pc.msi
MD5:
SHA256:
6148msiexec.exeC:\System Volume Information\SPP\metadata-2
MD5:
SHA256:
6148msiexec.exeC:\Windows\Installer\12cbd4.msi
MD5:
SHA256:
4784Virtual DJ - CHIP Installer _0y3Sv.exeC:\Users\admin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F5FC462917A5EFF571A320C5B11A8BE1_D3DA37E81AA7D16CAFC0CF2325CA7F8Ebinary
MD5:BD020CFC306089316AF33B4D498E24EA
SHA256:8F057BBB1E3DCBD227F6583ECBCDE94065DD8BAA7C443F61C1D04D5863D9EE78
4784Virtual DJ - CHIP Installer _0y3Sv.exeC:\Users\admin\AppData\Local\Microsoft\Windows\INetCache\IE\RR3E01RZ\easyprogresscampaign-progress-bitsolucians[1].htmhtml
MD5:9B2AFFEC375CD2607511F8E77AF8923F
SHA256:93FB2064AA42B2FDF959CA019217604C68478AB1A6A03C803F6AFDAB5C7027F6
6148msiexec.exeC:\Program Files\VirtualDJ\virtualdj.exe
MD5:
SHA256:
4784Virtual DJ - CHIP Installer _0y3Sv.exeC:\Users\admin\AppData\Local\Microsoft\Windows\INetCache\IE\KCV3KQBA\PPD_Bit-Driver-Updater_1[1].pngimage
MD5:4FA788C006BA2C165DFB15A20DD408D8
SHA256:AA0A1A9E282167A2A8BA84CED85760DF64311B6A2F60BF44E7BB17AAD3780C95
4784Virtual DJ - CHIP Installer _0y3Sv.exeC:\Users\admin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\81A71A1EF985834C23FADDAC1FBEF852_9405A3D9C6094AF9960321BA8BE8DC52binary
MD5:36D890B55F452F4944A37B912EDDEE4A
SHA256:30716E91BB1B84871F7D4217521CA6BE5C1964A9055C91406F22AC7F5A45E7E6
4784Virtual DJ - CHIP Installer _0y3Sv.exeC:\Users\admin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F5FC462917A5EFF571A320C5B11A8BE1_D3DA37E81AA7D16CAFC0CF2325CA7F8Ebinary
MD5:C16098D9B8F8E89AFBBBC6184B15BB6D
SHA256:D47AC6C21AC2DB9EC755F43F49F65B62D257BA847A866A17C4E23D98FD80F2F5
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
14
TCP/UDP connections
53
DNS requests
29
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
GET
200
23.48.23.146:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
5496
MoUsoCoreWorker.exe
GET
200
23.35.229.160:80
http://www.microsoft.com/pkiops/crl/MicSecSerCA2011_2011-10-18.crl
unknown
whitelisted
GET
200
23.35.229.160:80
http://www.microsoft.com/pkiops/crl/MicSecSerCA2011_2011-10-18.crl
unknown
whitelisted
5496
MoUsoCoreWorker.exe
GET
200
23.48.23.146:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
4784
Virtual DJ - CHIP Installer _0y3Sv.exe
GET
200
23.209.209.135:80
http://x1.c.lencr.org/
unknown
whitelisted
4784
Virtual DJ - CHIP Installer _0y3Sv.exe
GET
200
95.101.54.130:80
http://r11.o.lencr.org/MFMwUTBPME0wSzAJBgUrDgMCGgUABBQaUrm0WeTDM5ghfoZtS72KO9ZnzgQUCLkRO6XQhRi06g%2BgrZ%2BGHo78OCcCEgYdQc7vmeQco%2BgyDODMQ3O1vA%3D%3D
unknown
whitelisted
4784
Virtual DJ - CHIP Installer _0y3Sv.exe
GET
200
116.203.169.156:80
http://static.chip-secured-download.de/gfx/progress/BitGuardian/PPD_Bit-Driver-Updater_1.png
unknown
unknown
6544
svchost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
4784
Virtual DJ - CHIP Installer _0y3Sv.exe
GET
200
2.16.202.121:80
http://r10.o.lencr.org/MFMwUTBPME0wSzAJBgUrDgMCGgUABBRpD%2BQVZ%2B1vf7U0RGQGBm8JZwdxcgQUdKR2KRcYVIUxN75n5gZYwLzFBXICEgbVErOuIvq%2FAfsVn0qputNVtg%3D%3D
unknown
whitelisted
668
SIHClient.exe
GET
200
2.23.246.101:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4.231.128.59:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4
System
192.168.100.255:137
whitelisted
23.48.23.146:80
crl.microsoft.com
Akamai International B.V.
DE
whitelisted
5496
MoUsoCoreWorker.exe
23.48.23.146:80
crl.microsoft.com
Akamai International B.V.
DE
whitelisted
23.35.229.160:80
www.microsoft.com
AKAMAI-AS
DE
whitelisted
5496
MoUsoCoreWorker.exe
23.35.229.160:80
www.microsoft.com
AKAMAI-AS
DE
whitelisted
4
System
192.168.100.255:138
whitelisted
83.125.106.237:443
chip-cluster.de
3U TELECOM GmbH
DE
unknown
172.211.123.248:443
client.wns.windows.com
MICROSOFT-CORP-MSN-AS-BLOCK
FR
whitelisted
4784
Virtual DJ - CHIP Installer _0y3Sv.exe
23.36.162.7:443
www.chip.de
Akamai International B.V.
DE
whitelisted

DNS requests

Domain
IP
Reputation
settings-win.data.microsoft.com
  • 4.231.128.59
  • 20.73.194.208
whitelisted
google.com
  • 142.250.181.238
whitelisted
crl.microsoft.com
  • 23.48.23.146
  • 23.48.23.145
  • 23.48.23.143
  • 23.48.23.161
  • 23.48.23.139
  • 23.48.23.141
  • 23.48.23.159
  • 23.48.23.158
  • 23.48.23.140
whitelisted
www.microsoft.com
  • 23.35.229.160
  • 2.23.246.101
whitelisted
chip-cluster.de
  • 83.125.106.237
unknown
client.wns.windows.com
  • 172.211.123.248
whitelisted
www.chip.de
  • 23.36.162.7
  • 23.36.162.19
whitelisted
www.trustedoffers.de
  • 185.158.249.69
  • 185.212.44.250
unknown
securedl.cdn.chip.de
  • 2.16.168.103
  • 2.16.168.113
whitelisted
x1.c.lencr.org
  • 23.209.209.135
whitelisted

Threats

No threats detected
No debug info