File name:

winx-dvd-author-6-3-10.exe

Full analysis: https://app.any.run/tasks/2180e2f4-bfc5-47db-9719-6b7ed2fb2d99
Verdict: Malicious activity
Analysis date: December 20, 2023, 08:10:08
OS: Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:
MIME: application/x-dosexec
File info: PE32 executable (GUI) Intel 80386, for MS Windows
MD5:

150F3D68EA62C7DB4D001EEBBE267959

SHA1:

5188ACE80A2AC79DE0E8DBB66892DE7F79216A37

SHA256:

520A7A15C1FBC7D6133DD9D819839E515C4319171BFCFAE0F783B9C67388077F

SSDEEP:

98304:EJU5z7VfK9PyYEgXDgM72yRTMimAa3IP7ZG5nrPiSWPhlzHdxSnCYvu7wB1Og9G9:/B/KRffRRFS45/qgIQlWJOWc

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    • Drops the executable file immediately after the start

      • winx-dvd-author-6-3-10.exe (PID: 128)
      • winx-dvd-author-6-3-10.exe (PID: 492)
      • winx-dvd-author-6-3-10.tmp (PID: 268)
    • Registers / Runs the DLL via REGSVR32.EXE

      • winx-dvd-author-6-3-10.tmp (PID: 268)
  • SUSPICIOUS

    • Reads the Windows owner or organization settings

      • winx-dvd-author-6-3-10.tmp (PID: 268)
    • Process drops legitimate windows executable

      • winx-dvd-author-6-3-10.tmp (PID: 268)
    • Reads the Internet Settings

      • winx-dvd-author-6-3-10.tmp (PID: 1776)
  • INFO

    • Checks supported languages

      • winx-dvd-author-6-3-10.exe (PID: 128)
      • winx-dvd-author-6-3-10.tmp (PID: 1776)
      • winx-dvd-author-6-3-10.exe (PID: 492)
      • winx-dvd-author-6-3-10.tmp (PID: 268)
      • DVD_Author.exe (PID: 1936)
    • Reads the computer name

      • winx-dvd-author-6-3-10.tmp (PID: 1776)
      • winx-dvd-author-6-3-10.tmp (PID: 268)
    • Application launched itself

      • msedge.exe (PID: 1624)
    • Create files in a temporary directory

      • winx-dvd-author-6-3-10.exe (PID: 128)
      • winx-dvd-author-6-3-10.exe (PID: 492)
      • winx-dvd-author-6-3-10.tmp (PID: 268)
    • Creates files in the program directory

      • winx-dvd-author-6-3-10.tmp (PID: 268)
    • Creates files or folders in the user directory

      • DVD_Author.exe (PID: 1936)
      • winx-dvd-author-6-3-10.tmp (PID: 268)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Win32 Executable Delphi generic (45.2)
.dll | Win32 Dynamic Link Library (generic) (20.9)
.exe | Win32 Executable (generic) (14.3)
.exe | Win16/32 Executable Delphi generic (6.6)
.exe | Generic Win/DOS Executable (6.3)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2013:10:13 10:19:32+02:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, Bytes reversed lo, 32-bit, Bytes reversed hi
PEType: PE32
LinkerVersion: 2.25
CodeSize: 65024
InitializedDataSize: 53248
UninitializedDataSize: -
EntryPoint: 0x113bc
OSVersion: 5
ImageVersion: 6
SubsystemVersion: 5
Subsystem: Windows GUI
FileVersionNumber: 6.3.10.0
ProductVersionNumber: 6.3.10.0
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: Neutral
CharacterSet: Unicode
Comments: This installation was built with Inno Setup.
CompanyName: DigiartySoft, Inc.
FileDescription: WinX DVD Author Setup
FileVersion: 6.3.10
LegalCopyright:
ProductName: WinX DVD Author
ProductVersion: 6.3.10
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
61
Monitored processes
25
Malicious processes
4
Suspicious processes
0

Behavior graph

Click at the process to see the details
start winx-dvd-author-6-3-10.exe no specs winx-dvd-author-6-3-10.tmp no specs winx-dvd-author-6-3-10.exe winx-dvd-author-6-3-10.tmp no specs regsvr32.exe no specs dvd_author.exe no specs msedge.exe msedge.exe no specs msedge.exe no specs msedge.exe msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
128"C:\Users\admin\AppData\Local\Temp\winx-dvd-author-6-3-10.exe" C:\Users\admin\AppData\Local\Temp\winx-dvd-author-6-3-10.exeexplorer.exe
User:
admin
Company:
DigiartySoft, Inc.
Integrity Level:
MEDIUM
Description:
WinX DVD Author Setup
Exit code:
0
Version:
6.3.10
Modules
Images
c:\users\admin\appdata\local\temp\winx-dvd-author-6-3-10.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
268"C:\Users\admin\AppData\Local\Temp\is-06LEP.tmp\winx-dvd-author-6-3-10.tmp" /SL5="$501AC,10568305,119296,C:\Users\admin\AppData\Local\Temp\winx-dvd-author-6-3-10.exe" /SPAWNWND=$401B2 /NOTIFYWND=$301AA C:\Users\admin\AppData\Local\Temp\is-06LEP.tmp\winx-dvd-author-6-3-10.tmpwinx-dvd-author-6-3-10.exe
User:
admin
Integrity Level:
HIGH
Description:
Setup/Uninstall
Exit code:
0
Version:
51.1052.0.0
Modules
Images
c:\users\admin\appdata\local\temp\is-06lep.tmp\winx-dvd-author-6-3-10.tmp
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
492"C:\Users\admin\AppData\Local\Temp\winx-dvd-author-6-3-10.exe" /SPAWNWND=$401B2 /NOTIFYWND=$301AA C:\Users\admin\AppData\Local\Temp\winx-dvd-author-6-3-10.exe
winx-dvd-author-6-3-10.tmp
User:
admin
Company:
DigiartySoft, Inc.
Integrity Level:
HIGH
Description:
WinX DVD Author Setup
Exit code:
0
Version:
6.3.10
Modules
Images
c:\users\admin\appdata\local\temp\winx-dvd-author-6-3-10.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
584"C:\Windows\system32\regsvr32.exe" /s "C:\Program Files\Digiarty\WinX DVD Author 6.3.10\NMSDVDXU.dll"C:\Windows\System32\regsvr32.exewinx-dvd-author-6-3-10.tmp
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Microsoft(C) Register Server
Exit code:
0
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
Modules
Images
c:\windows\system32\regsvr32.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
900"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --lang=en-US --service-sandbox-type=service --mojo-platform-channel-handle=2616 --field-trial-handle=1328,i,437958253268827535,5302500752976013290,131072 /prefetch:8C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
908"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=renderer --disable-gpu-compositing --lang=en-US --js-flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=8 --mojo-platform-channel-handle=2388 --field-trial-handle=1328,i,437958253268827535,5302500752976013290,131072 /prefetch:1C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
1600"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=renderer --first-renderer-process --lang=en-US --js-flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=6 --mojo-platform-channel-handle=2300 --field-trial-handle=1328,i,437958253268827535,5302500752976013290,131072 /prefetch:1C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
1624"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --single-argument http://www.winxdvd.com/install/free-dvd-author.htm?6.3.10&ttsoft=author-6.3.10-ins-undefC:\Program Files\Microsoft\Edge\Application\msedge.exe
winx-dvd-author-6-3-10.tmp
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
1748"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1248 --field-trial-handle=1328,i,437958253268827535,5302500752976013290,131072 /prefetch:2C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
1768"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=renderer --lang=en-US --js-flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --mojo-platform-channel-handle=2324 --field-trial-handle=1328,i,437958253268827535,5302500752976013290,131072 /prefetch:1C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
Total events
3 131
Read events
3 051
Write events
19
Delete events
61

Modification events

(PID) Process:(584) regsvr32.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51496FEE-8200-4B10-B57C-EB5D64DB28A0}\InprocServer32
Operation:delete keyName:(default)
Value:
(PID) Process:(584) regsvr32.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51496FEE-8200-4B10-B57C-EB5D64DB28A0}\ProgID
Operation:delete keyName:(default)
Value:
(PID) Process:(584) regsvr32.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51496FEE-8200-4B10-B57C-EB5D64DB28A0}\Programmable
Operation:delete keyName:(default)
Value:
(PID) Process:(584) regsvr32.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51496FEE-8200-4B10-B57C-EB5D64DB28A0}\TypeLib
Operation:delete keyName:(default)
Value:
(PID) Process:(584) regsvr32.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51496FEE-8200-4B10-B57C-EB5D64DB28A0}\VersionIndependentProgID
Operation:delete keyName:(default)
Value:
(PID) Process:(584) regsvr32.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{51496FEE-8200-4B10-B57C-EB5D64DB28A0}
Operation:delete keyName:(default)
Value:
(PID) Process:(584) regsvr32.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E903EEA2-32AE-4ECC-906A-1E0312CE0365}\InprocServer32
Operation:delete keyName:(default)
Value:
(PID) Process:(584) regsvr32.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E903EEA2-32AE-4ECC-906A-1E0312CE0365}\ProgID
Operation:delete keyName:(default)
Value:
(PID) Process:(584) regsvr32.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E903EEA2-32AE-4ECC-906A-1E0312CE0365}\Programmable
Operation:delete keyName:(default)
Value:
(PID) Process:(584) regsvr32.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E903EEA2-32AE-4ECC-906A-1E0312CE0365}\TypeLib
Operation:delete keyName:(default)
Value:
Executable files
48
Suspicious files
69
Text files
116
Unknown types
0

Dropped files

PID
Process
Filename
Type
268winx-dvd-author-6-3-10.tmpC:\Program Files\Digiarty\WinX DVD Author 6.3.10\is-V1F60.tmpexecutable
MD5:ABB3B7211B57266356EDD4F97AA89CBD
SHA256:9BA7A94C734879E2B7AF2F99BE9B4BD6F4EE05A7AAEB2F0AE86F3BF63ECCC13D
128winx-dvd-author-6-3-10.exeC:\Users\admin\AppData\Local\Temp\is-13VR0.tmp\winx-dvd-author-6-3-10.tmpexecutable
MD5:ABB3B7211B57266356EDD4F97AA89CBD
SHA256:9BA7A94C734879E2B7AF2F99BE9B4BD6F4EE05A7AAEB2F0AE86F3BF63ECCC13D
268winx-dvd-author-6-3-10.tmpC:\Users\admin\AppData\Local\Temp\is-JP3L5.tmp\_isetup\_shfoldr.dllexecutable
MD5:92DC6EF532FBB4A5C3201469A5B5EB63
SHA256:9884E9D1B4F8A873CCBD81F8AD0AE257776D2348D027D811A56475E028360D87
268winx-dvd-author-6-3-10.tmpC:\Program Files\Digiarty\WinX DVD Author 6.3.10\is-UPEKK.tmpexecutable
MD5:925909417E073F387A296732740A021B
SHA256:9E2CC9F8E8F84CA2206D7E148BE1C2F8EED3C00F7AB5DF1517EA8A5F754D834E
492winx-dvd-author-6-3-10.exeC:\Users\admin\AppData\Local\Temp\is-06LEP.tmp\winx-dvd-author-6-3-10.tmpexecutable
MD5:ABB3B7211B57266356EDD4F97AA89CBD
SHA256:9BA7A94C734879E2B7AF2F99BE9B4BD6F4EE05A7AAEB2F0AE86F3BF63ECCC13D
268winx-dvd-author-6-3-10.tmpC:\Program Files\Digiarty\WinX DVD Author 6.3.10\DVD_Author.exeexecutable
MD5:7C419ED1DD41E2CD8E427F668641EE6F
SHA256:9CD076AAE7F27A6DA76AF6F717080094BC037014776E5ACCBF748C16959B6223
268winx-dvd-author-6-3-10.tmpC:\Program Files\Digiarty\WinX DVD Author 6.3.10\is-5V8JC.tmpexecutable
MD5:7C419ED1DD41E2CD8E427F668641EE6F
SHA256:9CD076AAE7F27A6DA76AF6F717080094BC037014776E5ACCBF748C16959B6223
268winx-dvd-author-6-3-10.tmpC:\Program Files\Digiarty\WinX DVD Author 6.3.10\is-5E1PC.tmpexecutable
MD5:5B8D3E88880752B05568C35C2F826E74
SHA256:BC85068C3A75B489A31AE7E70C5E288A163C1F8F95236093A78ACAA3C3124FCD
268winx-dvd-author-6-3-10.tmpC:\Program Files\Digiarty\WinX DVD Author 6.3.10\atrc3260.dllexecutable
MD5:925909417E073F387A296732740A021B
SHA256:9E2CC9F8E8F84CA2206D7E148BE1C2F8EED3C00F7AB5DF1517EA8A5F754D834E
268winx-dvd-author-6-3-10.tmpC:\Program Files\Digiarty\WinX DVD Author 6.3.10\is-ISNI1.tmpexecutable
MD5:A3411E40E88D512C66F26FFB5414A1D2
SHA256:F10B63D3E6ECD5AAAF49A24AB6494D9EE07F545705A4EDF526AE034AB082CD80
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
1
TCP/UDP connections
39
DNS requests
44
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
1844
msedge.exe
GET
301
67.228.127.233:80
http://www.winxdvd.com/install/free-dvd-author.htm?6.3.10&ttsoft=author-6.3.10-ins-undef
unknown
html
301 b
unknown
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4
System
192.168.100.255:137
whitelisted
4
System
192.168.100.255:138
whitelisted
1080
svchost.exe
224.0.0.252:5355
unknown
1624
msedge.exe
239.255.255.250:1900
whitelisted
1844
msedge.exe
13.107.42.16:443
config.edge.skype.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
whitelisted
1844
msedge.exe
67.228.127.233:80
www.winxdvd.com
SOFTLAYER
US
unknown
1844
msedge.exe
204.79.197.239:443
edge.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
unknown
1844
msedge.exe
67.228.127.233:443
www.winxdvd.com
SOFTLAYER
US
unknown
1844
msedge.exe
142.250.185.104:443
www.googletagmanager.com
unknown
1844
msedge.exe
142.250.184.206:443
www.google-analytics.com
whitelisted

DNS requests

Domain
IP
Reputation
config.edge.skype.com
  • 13.107.42.16
whitelisted
nav-edge.smartscreen.microsoft.com
  • 20.105.95.163
whitelisted
www.winxdvd.com
  • 67.228.127.233
unknown
edge.microsoft.com
  • 204.79.197.239
  • 13.107.21.239
whitelisted
www.googletagmanager.com
  • 142.250.185.104
whitelisted
www.google-analytics.com
  • 142.250.184.206
whitelisted
stats.g.doubleclick.net
  • 66.102.1.154
  • 66.102.1.155
  • 66.102.1.157
  • 66.102.1.156
whitelisted
googleads.g.doubleclick.net
  • 142.250.185.130
whitelisted
region1.analytics.google.com
  • 216.239.34.36
  • 216.239.32.36
whitelisted
www.google.de
  • 172.217.16.131
whitelisted

Threats

No threats detected
No debug info