File name:

VLC media player (64 Bit) - CHIP Installer _MmGVv.exe

Full analysis: https://app.any.run/tasks/b78d818e-5f2e-4046-8717-288bece7f204
Verdict: Malicious activity
Analysis date: May 28, 2025, 17:17:05
OS: Windows 10 Professional (build: 19044, 64 bit)
Tags:
auto
generic
delphi
Indicators:
MIME: application/vnd.microsoft.portable-executable
File info: PE32+ executable (GUI) x86-64, for MS Windows, 11 sections
MD5:

F5980F17F44DA870072C5CE396EB01BF

SHA1:

22CE208ACB16875CDD9D42A794557A56068220C2

SHA256:

2F9079DF89E96A997A910F9243173AC60BFE625501452152F8AB281778E5696B

SSDEEP:

49152:xhx7dxx15qe01xtgx41J/StY/yuiYWLmgpaRZkDuZdTNACtn:JV1JALgvz4ACtn

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    • GENERIC has been found (auto)

      • vlc-3.0.21-win64.exe (PID: 7776)
    • Registers / Runs the DLL via REGSVR32.EXE

      • vlc-3.0.21-win64.exe (PID: 7776)
  • SUSPICIOUS

    • Reads security settings of Internet Explorer

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
    • Searches for installed software

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
      • vlc-3.0.21-win64.exe (PID: 7776)
    • Reads Microsoft Outlook installation path

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
    • The process creates files with name similar to system file names

      • vlc-3.0.21-win64.exe (PID: 7776)
    • Reads Internet Explorer settings

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
    • Malware-specific behavior (creating "System.dll" in Temp)

      • vlc-3.0.21-win64.exe (PID: 7776)
    • There is functionality for taking screenshot (YARA)

      • vlc-3.0.21-win64.exe (PID: 7776)
      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
    • Creates/Modifies COM task schedule object

      • regsvr32.exe (PID: 6384)
    • Executable content was dropped or overwritten

      • vlc-3.0.21-win64.exe (PID: 7776)
    • Explorer used for Indirect Command Execution

      • explorer.exe (PID: 5280)
    • Creates a software uninstall entry

      • vlc-3.0.21-win64.exe (PID: 7776)
  • INFO

    • The sample compiled with english language support

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
      • vlc-3.0.21-win64.exe (PID: 7776)
    • Reads the computer name

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
      • vlc-3.0.21-win64.exe (PID: 7776)
      • vlc.exe (PID: 1056)
    • Checks supported languages

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
      • vlc-3.0.21-win64.exe (PID: 7776)
      • vlc-cache-gen.exe (PID: 8164)
      • vlc.exe (PID: 1056)
    • Reads the machine GUID from the registry

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
      • vlc-cache-gen.exe (PID: 8164)
    • Reads the software policy settings

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
    • Checks proxy server information

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
    • Creates files or folders in the user directory

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
    • Create files in a temporary directory

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
      • vlc-3.0.21-win64.exe (PID: 7776)
    • Compiled with Borland Delphi (YARA)

      • VLC media player (64 Bit) - CHIP Installer _MmGVv.exe (PID: 7296)
    • Creates files in the program directory

      • vlc-3.0.21-win64.exe (PID: 7776)
      • vlc-cache-gen.exe (PID: 8164)
    • Reads security settings of Internet Explorer

      • explorer.exe (PID: 1324)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Generic Win/DOS Executable (49.6)
.exe | DOS Executable Generic (49.5)
.vxd | VXD Driver (0.7)

EXIF

EXE

MachineType: AMD AMD64
TimeStamp: 2022:04:16 09:34:08+00:00
ImageFileCharacteristics: Executable, Large address aware
PEType: PE32+
LinkerVersion: 8
CodeSize: 4237824
InitializedDataSize: 1083392
UninitializedDataSize: -
EntryPoint: 0x3f8020
OSVersion: 5.2
ImageVersion: 5.2
SubsystemVersion: 5.2
Subsystem: Windows GUI
FileVersionNumber: 1.0.100.6
ProductVersionNumber: 1.0.100.6
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: English (U.S.)
CharacterSet: Windows, Latin1
CompanyName: CHIP Digital GmbH
FileDescription: CHIP Secured Installer
FileVersion: 1.0.100.6
LegalCopyright: Copyright 2021 CHIP Digital GmbH
ProductName: LgInstall
ProductVersion: 1.0.100.6
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
143
Monitored processes
11
Malicious processes
2
Suspicious processes
0

Behavior graph

Click at the process to see the details
start vlc media player (64 bit) - chip installer _mmgvv.exe #GENERIC vlc-3.0.21-win64.exe vlc-cache-gen.exe no specs conhost.exe no specs regsvr32.exe no specs regsvr32.exe no specs explorer.exe no specs explorer.exe no specs vlc.exe no specs slui.exe no specs vlc media player (64 bit) - chip installer _mmgvv.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
1056"C:\Program Files\VideoLAN\VLC\vlc.exe" C:\Program Files\VideoLAN\VLC\vlc.exeexplorer.exe
User:
admin
Company:
VideoLAN
Integrity Level:
MEDIUM
Description:
VLC media player
Exit code:
0
Version:
3.0.21
Modules
Images
c:\program files\videolan\vlc\vlc.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\bcrypt.dll
1324C:\WINDOWS\explorer.exe /factory,{75dff2b7-6936-4c06-a8bb-676a7b00b24b} -EmbeddingC:\Windows\explorer.exesvchost.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Windows Explorer
Version:
10.0.19041.3758 (WinBuild.160101.0800)
Modules
Images
c:\windows\explorer.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\twinapi.dll
3996C:\WINDOWS\System32\slui.exe -EmbeddingC:\Windows\System32\slui.exesvchost.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Windows Activation Client
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\slui.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\user32.dll
5280"C:\WINDOWS\explorer.exe" "C:\Program Files\VideoLAN\VLC\vlc.exe"C:\Windows\explorer.exevlc-3.0.21-win64.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Windows Explorer
Exit code:
1
Version:
10.0.19041.3758 (WinBuild.160101.0800)
Modules
Images
c:\windows\explorer.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\combase.dll
c:\windows\system32\aepic.dll
c:\windows\system32\rpcrt4.dll
6384 /s "C:\Program Files\VideoLAN\VLC\axvlc.dll"C:\Windows\System32\regsvr32.exeregsvr32.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Microsoft(C) Register Server
Exit code:
0
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\regsvr32.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\aclayers.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\win32u.dll
c:\windows\system32\gdi32.dll
7000"C:\WINDOWS\system32\regsvr32.exe" /s "C:\Program Files\VideoLAN\VLC\axvlc.dll"C:\Windows\SysWOW64\regsvr32.exevlc-3.0.21-win64.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Microsoft(C) Register Server
Exit code:
0
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\syswow64\regsvr32.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\aclayers.dll
7188"C:\Users\admin\AppData\Local\Temp\VLC media player (64 Bit) - CHIP Installer _MmGVv.exe" C:\Users\admin\AppData\Local\Temp\VLC media player (64 Bit) - CHIP Installer _MmGVv.exeexplorer.exe
User:
admin
Company:
CHIP Digital GmbH
Integrity Level:
MEDIUM
Description:
CHIP Secured Installer
Exit code:
3221226540
Version:
1.0.100.6
Modules
Images
c:\users\admin\appdata\local\temp\vlc media player (64 bit) - chip installer _mmgvv.exe
c:\windows\system32\ntdll.dll
7296"C:\Users\admin\AppData\Local\Temp\VLC media player (64 Bit) - CHIP Installer _MmGVv.exe" C:\Users\admin\AppData\Local\Temp\VLC media player (64 Bit) - CHIP Installer _MmGVv.exe
explorer.exe
User:
admin
Company:
CHIP Digital GmbH
Integrity Level:
HIGH
Description:
CHIP Secured Installer
Exit code:
0
Version:
1.0.100.6
Modules
Images
c:\users\admin\appdata\local\temp\vlc media player (64 bit) - chip installer _mmgvv.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\user32.dll
c:\windows\system32\win32u.dll
7776"C:\Users\admin\AppData\Local\Temp\vlc-3_0_21-win64_exe_4528202551716707946300\vlc-3.0.21-win64.exe"C:\Users\admin\AppData\Local\Temp\vlc-3_0_21-win64_exe_4528202551716707946300\vlc-3.0.21-win64.exe
VLC media player (64 Bit) - CHIP Installer _MmGVv.exe
User:
admin
Integrity Level:
HIGH
Exit code:
0
Modules
Images
c:\users\admin\appdata\local\temp\vlc-3_0_21-win64_exe_4528202551716707946300\vlc-3.0.21-win64.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\advapi32.dll
8164"C:\Program Files\VideoLAN\VLC\vlc-cache-gen.exe" C:\Program Files\VideoLAN\VLC\pluginsC:\Program Files\VideoLAN\VLC\vlc-cache-gen.exevlc-3.0.21-win64.exe
User:
admin
Company:
VideoLAN
Integrity Level:
HIGH
Description:
VLC media player
Exit code:
0
Version:
3.0.21
Modules
Images
c:\program files\videolan\vlc\vlc-cache-gen.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\bcrypt.dll
Total events
17 870
Read events
16 760
Write events
994
Delete events
116

Modification events

(PID) Process:(7296) VLC media player (64 Bit) - CHIP Installer _MmGVv.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History
Operation:writeName:CachePrefix
Value:
Visited:
(PID) Process:(7296) VLC media player (64 Bit) - CHIP Installer _MmGVv.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content
Operation:writeName:CachePrefix
Value:
(PID) Process:(7296) VLC media player (64 Bit) - CHIP Installer _MmGVv.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies
Operation:writeName:CachePrefix
Value:
Cookie:
(PID) Process:(7776) vlc-3.0.21-win64.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\vlc.exe
Operation:writeName:FriendlyAppName
Value:
VLC media player
(PID) Process:(7776) vlc-3.0.21-win64.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VLC.3ga\shell\Open
Operation:writeName:MultiSelectModel
Value:
Player
(PID) Process:(7776) vlc-3.0.21-win64.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\vlc.exe\SupportedTypes
Operation:writeName:7848872
Value:
(PID) Process:(7776) vlc-3.0.21-win64.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VLC.669\shell\Open
Operation:writeName:MultiSelectModel
Value:
Player
(PID) Process:(7776) vlc-3.0.21-win64.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VLC.aob\shell\Open
Operation:writeName:MultiSelectModel
Value:
Player
(PID) Process:(7776) vlc-3.0.21-win64.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VLC.ape\shell\Open
Operation:writeName:MultiSelectModel
Value:
Player
(PID) Process:(7776) vlc-3.0.21-win64.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VLC.caf\shell\Open
Operation:writeName:MultiSelectModel
Value:
Player
Executable files
378
Suspicious files
20
Text files
60
Unknown types
158

Dropped files

PID
Process
Filename
Type
7296VLC media player (64 Bit) - CHIP Installer _MmGVv.exeC:\Users\admin\AppData\Local\Temp\vlc-3_0_21-win64_exe_4528202551716707946300\vlc-3_0_21-win64_exe.parts
MD5:
SHA256:
7296VLC media player (64 Bit) - CHIP Installer _MmGVv.exeC:\Users\admin\AppData\Local\Temp\vlc-3_0_21-win64_exe_4528202551716707946300\vlc-3.0.21-win64.exe
MD5:
SHA256:
7296VLC media player (64 Bit) - CHIP Installer _MmGVv.exeC:\Users\admin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\103621DE9CD5414CC2538780B4B75751der
MD5:E192462F281446B5D1500D474FBACC4B
SHA256:F1BA9F1B63C447682EBF9DE956D0DA2A027B1B779ABEF9522D347D3479139A60
7296VLC media player (64 Bit) - CHIP Installer _MmGVv.exeC:\Users\admin\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EE726708BDA9554C277D9CDE42D0303Abinary
MD5:8A0B88E52F840ADC6FDD3E4B3E7725C9
SHA256:57EF8B005FC2CDF30A57FC3BDB68648C01A247E5E683CBD77510EB7E23C77E8A
7776vlc-3.0.21-win64.exeC:\Users\admin\AppData\Local\Temp\nsjF437.tmp\System.dllexecutable
MD5:4A82832A6209CDC3A2447AB2DE137542
SHA256:B07A12C5CED6A1ECE5E7DC4103F8B3E15BF77F5EDB70DAEF115B9A77BCF55885
7296VLC media player (64 Bit) - CHIP Installer _MmGVv.exeC:\Users\admin\AppData\Local\Microsoft\Windows\INetCache\IE\RR3E01RZ\easyprogresscampaign-progress-bitsolucians[1].htmhtml
MD5:9B2AFFEC375CD2607511F8E77AF8923F
SHA256:93FB2064AA42B2FDF959CA019217604C68478AB1A6A03C803F6AFDAB5C7027F6
7296VLC media player (64 Bit) - CHIP Installer _MmGVv.exeC:\Users\admin\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EE726708BDA9554C277D9CDE42D0303Abinary
MD5:B2A5EABB009ADC06837592F22BB3BE25
SHA256:9BDB8B6B5EA12824DF4320B2C2BE541D9DA084C67354BDFD8B65C35D4F96359F
7776vlc-3.0.21-win64.exeC:\Program Files\VideoLAN\VLC\vlc.exeexecutable
MD5:F9538485432D3EC640F89096BA2D4D00
SHA256:5D695D8A0BB1D919CC77A2AA2488A61797BFA065238160278EE458120630AAF9
7776vlc-3.0.21-win64.exeC:\Users\admin\AppData\Local\Temp\nsjF437.tmp\nsDialogs.dllexecutable
MD5:8B11196DC49C4DF98C6F97457C97E590
SHA256:47A1976B7736371B9B2E073EF0DD49DB3BDBE604EC9EE77E50621E5F19D9AE7B
7776vlc-3.0.21-win64.exeC:\Users\admin\AppData\Local\Temp\nsjF437.tmp\modern-wizard.bmpimage
MD5:62C83E308015E087AFC979EC4CE88AF6
SHA256:D13427F81EC2D123845CEE7CFE2F6C5663709444CB90713CB474E7898AE645E4
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
9
TCP/UDP connections
35
DNS requests
24
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
GET
200
2.16.168.114:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
GET
200
95.101.149.131:80
http://www.microsoft.com/pkiops/crl/MicSecSerCA2011_2011-10-18.crl
unknown
whitelisted
7296
VLC media player (64 Bit) - CHIP Installer _MmGVv.exe
GET
200
2.19.105.127:80
http://x1.c.lencr.org/
unknown
whitelisted
7296
VLC media player (64 Bit) - CHIP Installer _MmGVv.exe
GET
200
3.167.227.94:80
http://r10.c.lencr.org/6.crl
unknown
whitelisted
7296
VLC media player (64 Bit) - CHIP Installer _MmGVv.exe
GET
200
116.203.169.156:80
http://static.chip-secured-download.de/gfx/progress/BitGuardian/PPD_Bit-Driver-Updater_1.png
unknown
unknown
7296
VLC media player (64 Bit) - CHIP Installer _MmGVv.exe
GET
200
3.167.227.94:80
http://r10.c.lencr.org/127.crl
unknown
whitelisted
6544
svchost.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
7932
SIHClient.exe
GET
200
23.35.229.160:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
7932
SIHClient.exe
GET
200
23.35.229.160:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4
System
192.168.100.255:137
whitelisted
40.127.240.158:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
2.16.168.114:80
crl.microsoft.com
Akamai International B.V.
RU
whitelisted
95.101.149.131:80
www.microsoft.com
Akamai International B.V.
NL
whitelisted
5796
svchost.exe
40.127.240.158:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4
System
192.168.100.255:138
whitelisted
2112
svchost.exe
4.231.128.59:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
7296
VLC media player (64 Bit) - CHIP Installer _MmGVv.exe
83.125.106.237:443
chip-cluster.de
3U TELECOM GmbH
DE
unknown
7296
VLC media player (64 Bit) - CHIP Installer _MmGVv.exe
2.23.227.29:443
www.chip.de
Ooredoo Q.S.C.
QA
whitelisted
3216
svchost.exe
172.211.123.250:443
client.wns.windows.com
MICROSOFT-CORP-MSN-AS-BLOCK
FR
whitelisted

DNS requests

Domain
IP
Reputation
google.com
  • 216.58.206.78
whitelisted
crl.microsoft.com
  • 2.16.168.114
  • 2.16.168.124
whitelisted
www.microsoft.com
  • 95.101.149.131
  • 23.35.229.160
whitelisted
settings-win.data.microsoft.com
  • 4.231.128.59
  • 40.127.240.158
whitelisted
chip-cluster.de
  • 83.125.106.237
unknown
www.chip.de
  • 2.23.227.29
  • 2.23.227.15
whitelisted
client.wns.windows.com
  • 172.211.123.250
whitelisted
securedl.cdn.chip.de
  • 2.16.106.21
  • 2.16.106.35
whitelisted
www.trustedoffers.de
  • 185.212.44.250
  • 185.158.249.69
unknown
x1.c.lencr.org
  • 2.19.105.127
whitelisted

Threats

No threats detected
No debug info