File name:

AX3000 WIN WiFi setup.exe

Full analysis: https://app.any.run/tasks/98cd0192-6016-400a-8788-4ba2b55f78a9
Verdict: Malicious activity
Analysis date: October 08, 2024, 18:39:49
OS: Windows 10 Professional (build: 19045, 64 bit)
Indicators:
MIME: application/x-dosexec
File info: PE32 executable (GUI) Intel 80386, for MS Windows
MD5:

E9FE94DACAD6B260FAFB1B534EE3E184

SHA1:

52FB4C62C7F8470D29C69DDD1A661B9B135D3690

SHA256:

73ED724EF010325C589942952BE14AF2583A5AADDF72FAA17D4484D0422C2D8C

SSDEEP:

98304:H2LyCuPdyj1HpFGmrs5IfLWm+fcywAGBLguBpLmzc3tZw1YhBTj5FAnEvE5AHRVd:SGw38JGs3wuSjN

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Reads the Windows owner or organization settings

      • AX3000 WIN WiFi setup.tmp (PID: 6508)
    • Starts CMD.EXE for commands execution

      • AX3000 WIN WiFi setup.tmp (PID: 6508)
      • cmd.exe (PID: 5920)
    • Executable content was dropped or overwritten

      • AX3000 WIN WiFi setup.tmp (PID: 6508)
      • pnputil.exe (PID: 4088)
      • AX3000 WIN WiFi setup.exe (PID: 5400)
      • drvinst.exe (PID: 1784)
      • AX3000 WIN WiFi setup.exe (PID: 6572)
    • Executing commands from ".cmd" file

      • AX3000 WIN WiFi setup.tmp (PID: 6508)
    • Uses ICACLS.EXE to modify access control lists

      • cmd.exe (PID: 5920)
    • Drops a system driver (possible attempt to evade defenses)

      • pnputil.exe (PID: 4088)
      • drvinst.exe (PID: 1784)
    • Uses TIMEOUT.EXE to delay execution

      • cmd.exe (PID: 5920)
    • Application launched itself

      • cmd.exe (PID: 5920)
    • Reads security settings of Internet Explorer

      • AX3000 WIN WiFi setup.tmp (PID: 4548)
  • INFO

    • Create files in a temporary directory

      • AX3000 WIN WiFi setup.exe (PID: 5400)
      • AX3000 WIN WiFi setup.tmp (PID: 6508)
      • AX3000 WIN WiFi setup.exe (PID: 6572)
    • Checks supported languages

      • AX3000 WIN WiFi setup.exe (PID: 5400)
      • AX3000 WIN WiFi setup.tmp (PID: 4548)
      • AX3000 WIN WiFi setup.exe (PID: 6572)
      • AX3000 WIN WiFi setup.tmp (PID: 6508)
    • Creates files in the program directory

      • AX3000 WIN WiFi setup.tmp (PID: 6508)
    • Reads the computer name

      • AX3000 WIN WiFi setup.tmp (PID: 6508)
      • AX3000 WIN WiFi setup.tmp (PID: 4548)
    • Process checks computer location settings

      • AX3000 WIN WiFi setup.tmp (PID: 4548)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Inno Setup installer (77.7)
.exe | Win32 Executable Delphi generic (10)
.dll | Win32 Dynamic Link Library (generic) (4.6)
.exe | Win32 Executable (generic) (3.1)
.exe | Win16/32 Executable Delphi generic (1.4)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 1992:06:19 22:22:17+00:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, Bytes reversed lo, 32-bit, Bytes reversed hi
PEType: PE32
LinkerVersion: 2.25
CodeSize: 41472
InitializedDataSize: 20480
UninitializedDataSize: -
EntryPoint: 0xaa98
OSVersion: 1
ImageVersion: 6
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 0.0.0.0
ProductVersionNumber: 0.0.0.0
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: Neutral
CharacterSet: Unicode
Comments: This installation was built with Inno Setup.
CompanyName: Thankmart
FileDescription: AX3000 Wireless Network Adapter Setup
FileVersion:
LegalCopyright:
ProductName: AX3000 Wireless Network Adapter
ProductVersion: 2.1
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
151
Monitored processes
15
Malicious processes
3
Suspicious processes
2

Behavior graph

Click at the process to see the details
start ax3000 win wifi setup.exe ax3000 win wifi setup.tmp no specs ax3000 win wifi setup.exe ax3000 win wifi setup.tmp cmd.exe no specs conhost.exe no specs cacls.exe no specs pnputil.exe drvinst.exe pnputil.exe no specs cmd.exe no specs find.exe no specs timeout.exe no specs sppextcomobj.exe no specs slui.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
1784DrvInst.exe "4" "0" "C:\Users\admin\AppData\Local\Temp\{461f0771-5292-904e-b695-520903c4ba43}\mtkwl6ex.inf" "9" "440e01caf" "00000000000001CC" "WinSta0\Default" "00000000000001DC" "208" "C:\Users\admin\AppData\Local\Temp\is-I1A44.tmp"C:\Windows\System32\drvinst.exe
svchost.exe
User:
SYSTEM
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Driver Installation Module
Exit code:
0
Version:
10.0.19041.3996 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\drvinst.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\devrtl.dll
c:\windows\system32\drvstore.dll
2708\??\C:\WINDOWS\system32\conhost.exe 0xffffffff -ForceV1C:\Windows\System32\conhost.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Console Window Host
Exit code:
0
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\conhost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\shcore.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
3108C:\WINDOWS\system32\cmd.exe /c find /i "DriverVer" "mtkwl6ex.inf"C:\Windows\System32\cmd.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Windows Command Processor
Exit code:
0
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\cmd.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\combase.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\sechost.dll
4088pnputil /add-driver "mtkwl6ex.inf" /install C:\Windows\System32\pnputil.exe
cmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Microsoft PnP Utility - Tool to add, delete, export, and enumerate driver packages.
Exit code:
0
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\pnputil.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\devobj.dll
c:\windows\system32\advapi32.dll
4548"C:\Users\admin\AppData\Local\Temp\is-NM4DB.tmp\AX3000 WIN WiFi setup.tmp" /SL5="$90232,5404900,62976,C:\Users\admin\AppData\Local\Temp\AX3000 WIN WiFi setup.exe" C:\Users\admin\AppData\Local\Temp\is-NM4DB.tmp\AX3000 WIN WiFi setup.tmpAX3000 WIN WiFi setup.exe
User:
admin
Integrity Level:
MEDIUM
Description:
Setup/Uninstall
Exit code:
0
Version:
51.52.0.0
Modules
Images
c:\users\admin\appdata\local\temp\is-nm4db.tmp\ax3000 win wifi setup.tmp
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\user32.dll
4836pnputil -i -a "mtkwl6ex.inf" C:\Windows\System32\pnputil.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Microsoft PnP Utility - Tool to add, delete, export, and enumerate driver packages.
Exit code:
0
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\pnputil.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\devobj.dll
5400"C:\Users\admin\AppData\Local\Temp\AX3000 WIN WiFi setup.exe" C:\Users\admin\AppData\Local\Temp\AX3000 WIN WiFi setup.exe
explorer.exe
User:
admin
Company:
Thankmart
Integrity Level:
MEDIUM
Description:
AX3000 Wireless Network Adapter Setup
Exit code:
0
Version:
Modules
Images
c:\users\admin\appdata\local\temp\ax3000 win wifi setup.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\user32.dll
5920"C:\WINDOWS\system32\cmd.exe" /C ""C:\Users\admin\AppData\Local\Temp\is-I1A44.tmp\Setup_Driver.cmd""C:\Windows\System32\cmd.exeAX3000 WIN WiFi setup.tmp
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Windows Command Processor
Exit code:
1
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\cmd.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\combase.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\cmdext.dll
6000find /i "DriverVer" "mtkwl6ex.inf"C:\Windows\System32\find.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Find String (grep) Utility
Exit code:
0
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\find.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\ulib.dll
c:\windows\system32\fsutilext.dll
6088"C:\WINDOWS\System32\SLUI.exe" RuleId=3482d82e-ca2c-4e1f-8864-da0267b484b2;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=TimerEventC:\Windows\System32\slui.exeSppExtComObj.Exe
User:
NETWORK SERVICE
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Windows Activation Client
Version:
10.0.19041.1 (WinBuild.160101.0800)
Modules
Images
c:\windows\system32\slui.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\user32.dll
Total events
3 773
Read events
3 750
Write events
23
Delete events
0

Modification events

(PID) Process:(6508) AX3000 WIN WiFi setup.tmpKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ED673FFF-87AC-4CCB-ABE7-004E83B345D7}_is1
Operation:writeName:Inno Setup: Setup Version
Value:
5.5.9 (a)
(PID) Process:(6508) AX3000 WIN WiFi setup.tmpKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ED673FFF-87AC-4CCB-ABE7-004E83B345D7}_is1
Operation:writeName:Inno Setup: App Path
Value:
C:\Program Files\AX3000 Wireless Network Adapter
(PID) Process:(6508) AX3000 WIN WiFi setup.tmpKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ED673FFF-87AC-4CCB-ABE7-004E83B345D7}_is1
Operation:writeName:InstallLocation
Value:
C:\Program Files\AX3000 Wireless Network Adapter\
(PID) Process:(6508) AX3000 WIN WiFi setup.tmpKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ED673FFF-87AC-4CCB-ABE7-004E83B345D7}_is1
Operation:writeName:Inno Setup: Icon Group
Value:
AX3000 Wireless Network Adapter
(PID) Process:(6508) AX3000 WIN WiFi setup.tmpKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ED673FFF-87AC-4CCB-ABE7-004E83B345D7}_is1
Operation:writeName:Inno Setup: User
Value:
admin
(PID) Process:(6508) AX3000 WIN WiFi setup.tmpKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ED673FFF-87AC-4CCB-ABE7-004E83B345D7}_is1
Operation:writeName:Inno Setup: Language
Value:
default
(PID) Process:(6508) AX3000 WIN WiFi setup.tmpKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ED673FFF-87AC-4CCB-ABE7-004E83B345D7}_is1
Operation:writeName:DisplayName
Value:
AX3000 Wireless Network Adapter
(PID) Process:(6508) AX3000 WIN WiFi setup.tmpKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ED673FFF-87AC-4CCB-ABE7-004E83B345D7}_is1
Operation:writeName:UninstallString
Value:
"C:\Program Files\AX3000 Wireless Network Adapter\unins000.exe"
(PID) Process:(6508) AX3000 WIN WiFi setup.tmpKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ED673FFF-87AC-4CCB-ABE7-004E83B345D7}_is1
Operation:writeName:QuietUninstallString
Value:
"C:\Program Files\AX3000 Wireless Network Adapter\unins000.exe" /SILENT
(PID) Process:(6508) AX3000 WIN WiFi setup.tmpKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ED673FFF-87AC-4CCB-ABE7-004E83B345D7}_is1
Operation:writeName:DisplayVersion
Value:
2.1
Executable files
15
Suspicious files
75
Text files
9
Unknown types
8

Dropped files

PID
Process
Filename
Type
6508AX3000 WIN WiFi setup.tmpC:\Program Files\AX3000 Wireless Network Adapter\unins000.exe
MD5:
SHA256:
6508AX3000 WIN WiFi setup.tmpC:\Users\admin\AppData\Local\Temp\is-I1A44.tmp\Detail.txt
MD5:
SHA256:
6508AX3000 WIN WiFi setup.tmpC:\Users\admin\AppData\Local\Temp\is-I1A44.tmp\is-J42S1.tmp
MD5:
SHA256:
6508AX3000 WIN WiFi setup.tmpC:\Users\admin\AppData\Local\Temp\is-I1A44.tmp\mtkihvx.dll
MD5:
SHA256:
6508AX3000 WIN WiFi setup.tmpC:\Users\admin\AppData\Local\Temp\is-I1A44.tmp\mtkwl1.dat
MD5:
SHA256:
6508AX3000 WIN WiFi setup.tmpC:\Users\admin\AppData\Local\Temp\is-I1A44.tmp\mtkwl1_2.dat
MD5:
SHA256:
6508AX3000 WIN WiFi setup.tmpC:\Users\admin\AppData\Local\Temp\is-I1A44.tmp\mtkwl2.dat
MD5:
SHA256:
6508AX3000 WIN WiFi setup.tmpC:\Users\admin\AppData\Local\Temp\is-I1A44.tmp\mtkwl2_2.dat
MD5:
SHA256:
6508AX3000 WIN WiFi setup.tmpC:\Users\admin\AppData\Local\Temp\is-I1A44.tmp\mtkwl6ex.cat
MD5:
SHA256:
6508AX3000 WIN WiFi setup.tmpC:\Users\admin\AppData\Local\Temp\is-I1A44.tmp\mtkwl6ex.inf
MD5:
SHA256:
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
6
TCP/UDP connections
57
DNS requests
22
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
GET
200
184.30.21.171:80
http://www.microsoft.com/pkiops/crl/MicSecSerCA2011_2011-10-18.crl
unknown
whitelisted
4360
SearchApp.exe
GET
200
192.229.221.95:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTrjrydRyt%2BApF3GSPypfHBxR5XtQQUs9tIpPmhxdiuNkHMEWNpYim8S8YCEAI5PUjXAkJafLQcAAsO18o%3D
unknown
whitelisted
2620
SIHClient.exe
GET
200
184.30.21.171:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
4004
svchost.exe
GET
200
192.229.221.95:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
2620
SIHClient.exe
GET
200
184.30.21.171:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
7100
backgroundTaskHost.exe
GET
200
192.229.221.95:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAn5bsKVVV8kdJ6vHl3O1J0%3D
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
6944
svchost.exe
51.124.78.146:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
4
System
192.168.100.255:137
whitelisted
1752
RUXIMICS.exe
51.124.78.146:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
5488
MoUsoCoreWorker.exe
51.124.78.146:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
4
System
192.168.100.255:138
whitelisted
6944
svchost.exe
51.104.136.2:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
6944
svchost.exe
184.30.21.171:80
www.microsoft.com
AKAMAI-AS
DE
whitelisted
4360
SearchApp.exe
104.126.37.163:443
www.bing.com
Akamai International B.V.
DE
whitelisted
4004
svchost.exe
40.126.31.67:443
login.live.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4360
SearchApp.exe
192.229.221.95:80
ocsp.digicert.com
EDGECAST
US
whitelisted

DNS requests

Domain
IP
Reputation
settings-win.data.microsoft.com
  • 51.124.78.146
  • 51.104.136.2
whitelisted
google.com
  • 142.250.186.142
whitelisted
www.microsoft.com
  • 184.30.21.171
whitelisted
www.bing.com
  • 104.126.37.163
  • 104.126.37.176
  • 104.126.37.155
  • 104.126.37.168
  • 104.126.37.147
  • 104.126.37.153
  • 104.126.37.154
  • 104.126.37.171
  • 104.126.37.161
  • 2.23.209.176
  • 2.23.209.181
  • 2.23.209.177
  • 2.23.209.182
  • 2.23.209.189
  • 2.23.209.161
  • 2.23.209.187
  • 2.23.209.179
  • 2.23.209.185
whitelisted
login.live.com
  • 40.126.31.67
  • 20.190.159.23
  • 20.190.159.68
  • 20.190.159.73
  • 20.190.159.2
  • 20.190.159.4
  • 40.126.31.73
  • 20.190.159.0
whitelisted
ocsp.digicert.com
  • 192.229.221.95
whitelisted
th.bing.com
  • 104.126.37.129
  • 104.126.37.145
  • 104.126.37.176
  • 104.126.37.171
  • 104.126.37.177
  • 104.126.37.139
  • 104.126.37.146
  • 104.126.37.137
  • 104.126.37.144
whitelisted
go.microsoft.com
  • 23.218.210.69
whitelisted
slscr.update.microsoft.com
  • 172.202.163.200
whitelisted
client.wns.windows.com
  • 40.115.3.253
whitelisted

Threats

No threats detected
No debug info