URL:

https://download.specopssoft.com/Release/gpupdate/specopsgpupdatesetup.exe

Full analysis: https://app.any.run/tasks/41897ccb-31a8-47c6-aab2-1b00a36acdd1
Verdict: Malicious activity
Analysis date: June 04, 2025, 11:46:11
OS: Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:
MD5:

8884545F7B35CE5E62309D115F3E7D22

SHA1:

1D2DEC8701E4AD792235E17B6D3C4DB88BE44D70

SHA256:

95CC1BAD6C23515E1BAB6842CF8DD78E80B2D67BC044108480C10216CD0D57CD

SSDEEP:

3:N8SElqKVsZGGwJQXrERAB/QVkA:2SKqOsXwJQXrES/AkA

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    • Executing a file with an untrusted certificate

      • specopsgpupdatesetup.exe (PID: 2740)
      • specopsgpupdatesetup.exe (PID: 1648)
      • Specopssoft.SetupAssistant.exe (PID: 3064)
  • SUSPICIOUS

    • Reads the Internet Settings

      • specopsgpupdatesetup.exe (PID: 2740)
      • setup.exe (PID: 1996)
      • Specopssoft.SetupAssistant.exe (PID: 3064)
    • Reads security settings of Internet Explorer

      • specopsgpupdatesetup.exe (PID: 2740)
      • setup.exe (PID: 1996)
      • Specopssoft.SetupAssistant.exe (PID: 3064)
    • Executable content was dropped or overwritten

      • specopsgpupdatesetup.exe (PID: 2740)
    • The process creates files with name similar to system file names

      • specopsgpupdatesetup.exe (PID: 2740)
    • Reads the Windows owner or organization settings

      • Specopssoft.SetupAssistant.exe (PID: 3064)
    • There is functionality for taking screenshot (YARA)

      • specopsgpupdatesetup.exe (PID: 2740)
    • Reads Microsoft Outlook installation path

      • Specopssoft.SetupAssistant.exe (PID: 3064)
    • Reads Internet Explorer settings

      • Specopssoft.SetupAssistant.exe (PID: 3064)
  • INFO

    • Application launched itself

      • chrome.exe (PID: 2308)
    • Executable content was dropped or overwritten

      • chrome.exe (PID: 2308)
      • chrome.exe (PID: 3252)
      • chrome.exe (PID: 3540)
    • Launching a file from the Downloads directory

      • chrome.exe (PID: 2308)
    • Checks supported languages

      • specopsgpupdatesetup.exe (PID: 2740)
      • setup.exe (PID: 1996)
      • Specopssoft.SetupAssistant.exe (PID: 3064)
      • msiexec.exe (PID: 3976)
    • Reads the computer name

      • specopsgpupdatesetup.exe (PID: 2740)
      • setup.exe (PID: 1996)
      • Specopssoft.SetupAssistant.exe (PID: 3064)
      • msiexec.exe (PID: 3976)
    • The sample compiled with english language support

      • specopsgpupdatesetup.exe (PID: 2740)
      • chrome.exe (PID: 3252)
      • chrome.exe (PID: 3540)
    • Create files in a temporary directory

      • setup.exe (PID: 1996)
    • Reads the machine GUID from the registry

      • Specopssoft.SetupAssistant.exe (PID: 3064)
      • msiexec.exe (PID: 3976)
    • Creates files or folders in the user directory

      • Specopssoft.SetupAssistant.exe (PID: 3064)
    • Checks proxy server information

      • Specopssoft.SetupAssistant.exe (PID: 3064)
    • Process checks Powershell version

      • Specopssoft.SetupAssistant.exe (PID: 3064)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
62
Monitored processes
26
Malicious processes
4
Suspicious processes
1

Behavior graph

Click at the process to see the details
start chrome.exe chrome.exe no specs chrome.exe no specs chrome.exe chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe no specs specopsgpupdatesetup.exe no specs specopsgpupdatesetup.exe setup.exe no specs specopssoft.setupassistant.exe no specs msiexec.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe no specs chrome.exe chrome.exe

Process information

PID
CMD
Path
Indicators
Parent process
288"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=chrome.mojom.UtilWin --lang=en-US --service-sandbox-type=none --disable-quic --mojo-platform-channel-handle=1812 --field-trial-handle=1172,i,2796398440273287877,12489852972054661906,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8C:\Program Files\Google\Chrome\Application\chrome.exechrome.exe
User:
admin
Company:
Google LLC
Integrity Level:
MEDIUM
Description:
Google Chrome
Exit code:
0
Version:
109.0.5414.120
Modules
Images
c:\program files\google\chrome\application\chrome.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\109.0.5414.120\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
1648"C:\Users\admin\Downloads\specopsgpupdatesetup.exe" C:\Users\admin\Downloads\specopsgpupdatesetup.exechrome.exe
User:
admin
Company:
Specops Software
Integrity Level:
MEDIUM
Description:
Specops Self Extractor
Exit code:
3221226540
Version:
65535.65535.65535.65535
Modules
Images
c:\users\admin\downloads\specopsgpupdatesetup.exe
c:\windows\system32\ntdll.dll
1656"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=renderer --first-renderer-process --lang=en-US --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=6 --mojo-platform-channel-handle=2008 --field-trial-handle=1172,i,2796398440273287877,12489852972054661906,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:1C:\Program Files\Google\Chrome\Application\chrome.exechrome.exe
User:
admin
Company:
Google LLC
Integrity Level:
LOW
Description:
Google Chrome
Version:
109.0.5414.120
Modules
Images
c:\program files\google\chrome\application\chrome.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\109.0.5414.120\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
1800"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=quarantine.mojom.Quarantine --lang=en-US --service-sandbox-type=none --disable-quic --mojo-platform-channel-handle=1176 --field-trial-handle=1172,i,2796398440273287877,12489852972054661906,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8C:\Program Files\Google\Chrome\Application\chrome.exechrome.exe
User:
admin
Company:
Google LLC
Integrity Level:
MEDIUM
Description:
Google Chrome
Exit code:
0
Version:
109.0.5414.120
Modules
Images
c:\program files\google\chrome\application\chrome.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\109.0.5414.120\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
1996"C:\temp\SpecopsGpUpdate_Setup_2.2.21013.1\setup.exe" C:\temp\SpecopsGpUpdate_Setup_2.2.21013.1\setup.exespecopsgpupdatesetup.exe
User:
admin
Integrity Level:
HIGH
Description:
Setup
Version:
10.0.30319.1 built by: RTMRel
Modules
Images
c:\temp\specopsgpupdate_setup_2.2.21013.1\setup.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\ole32.dll
2204"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=chrome.mojom.UtilReadIcon --lang=en-US --service-sandbox-type=icon_reader --disable-quic --mojo-platform-channel-handle=3792 --field-trial-handle=1172,i,2796398440273287877,12489852972054661906,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8C:\Program Files\Google\Chrome\Application\chrome.exechrome.exe
User:
admin
Company:
Google LLC
Integrity Level:
LOW
Description:
Google Chrome
Exit code:
0
Version:
109.0.5414.120
Modules
Images
c:\program files\google\chrome\application\chrome.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\109.0.5414.120\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
2208"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=chrome.mojom.UtilReadIcon --lang=en-US --service-sandbox-type=icon_reader --disable-quic --mojo-platform-channel-handle=3636 --field-trial-handle=1172,i,2796398440273287877,12489852972054661906,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8C:\Program Files\Google\Chrome\Application\chrome.exechrome.exe
User:
admin
Company:
Google LLC
Integrity Level:
LOW
Description:
Google Chrome
Exit code:
0
Version:
109.0.5414.120
Modules
Images
c:\program files\google\chrome\application\chrome.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\109.0.5414.120\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
2308"C:\Program Files\Google\Chrome\Application\chrome.exe" --disk-cache-dir=null --disk-cache-size=1 --media-cache-size=1 --disable-gpu-shader-disk-cache --disable-background-networking --disable-features=OptimizationGuideModelDownloading,OptimizationHintsFetching,OptimizationTargetPrediction,OptimizationHints "https://download.specopssoft.com/Release/gpupdate/specopsgpupdatesetup.exe"C:\Program Files\Google\Chrome\Application\chrome.exe
explorer.exe
User:
admin
Company:
Google LLC
Integrity Level:
MEDIUM
Description:
Google Chrome
Version:
109.0.5414.120
Modules
Images
c:\program files\google\chrome\application\chrome.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\109.0.5414.120\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
2608"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=chrome.mojom.UtilReadIcon --lang=en-US --service-sandbox-type=icon_reader --disable-quic --mojo-platform-channel-handle=3652 --field-trial-handle=1172,i,2796398440273287877,12489852972054661906,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8C:\Program Files\Google\Chrome\Application\chrome.exechrome.exe
User:
admin
Company:
Google LLC
Integrity Level:
LOW
Description:
Google Chrome
Exit code:
0
Version:
109.0.5414.120
Modules
Images
c:\program files\google\chrome\application\chrome.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\109.0.5414.120\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
2656"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=unzip.mojom.Unzipper --lang=en-US --service-sandbox-type=service --disable-quic --mojo-platform-channel-handle=728 --field-trial-handle=1172,i,2796398440273287877,12489852972054661906,131072 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8C:\Program Files\Google\Chrome\Application\chrome.exechrome.exe
User:
admin
Company:
Google LLC
Integrity Level:
LOW
Description:
Google Chrome
Exit code:
0
Version:
109.0.5414.120
Modules
Images
c:\program files\google\chrome\application\chrome.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\google\chrome\application\109.0.5414.120\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
Total events
12 478
Read events
12 345
Write events
128
Delete events
5

Modification events

(PID) Process:(2308) chrome.exeKey:HKEY_CURRENT_USER\Software\Google\Chrome\BLBeacon
Operation:writeName:failed_count
Value:
0
(PID) Process:(2308) chrome.exeKey:HKEY_CURRENT_USER\Software\Google\Chrome\BLBeacon
Operation:writeName:state
Value:
2
(PID) Process:(2308) chrome.exeKey:HKEY_CURRENT_USER\Software\Google\Chrome\ThirdParty
Operation:writeName:StatusCodes
Value:
(PID) Process:(2308) chrome.exeKey:HKEY_CURRENT_USER\Software\Google\Chrome\ThirdParty
Operation:writeName:StatusCodes
Value:
01000000
(PID) Process:(2308) chrome.exeKey:HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
Operation:writeName:dr
Value:
1
(PID) Process:(2308) chrome.exeKey:HKEY_CURRENT_USER\Software\Google\Chrome
Operation:writeName:UsageStatsInSample
Value:
0
(PID) Process:(2308) chrome.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Google\Update\ClientStateMedium\{8A69D345-D564-463C-AFF1-A69D9E530F96}
Operation:writeName:usagestats
Value:
0
(PID) Process:(2308) chrome.exeKey:HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
Operation:writeName:metricsid
Value:
(PID) Process:(2308) chrome.exeKey:HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
Operation:writeName:metricsid_installdate
Value:
0
(PID) Process:(2308) chrome.exeKey:HKEY_CURRENT_USER\Software\Google\Update\ClientState\{8A69D345-D564-463c-AFF1-A69D9E530F96}
Operation:writeName:metricsid_enableddate
Value:
0
Executable files
22
Suspicious files
50
Text files
55
Unknown types
4

Dropped files

PID
Process
Filename
Type
2308chrome.exeC:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\commerce_subscription_db\LOG.old~RF1943f4.TMP
MD5:
SHA256:
2308chrome.exeC:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\commerce_subscription_db\LOG.old
MD5:
SHA256:
2308chrome.exeC:\Users\admin\AppData\Local\Google\Chrome\User Data\Last Versiontext
MD5:9F941EA08DBDCA2EB3CFA1DBBBA6F5DC
SHA256:127F71DF0D2AD895D4F293E62284D85971AE047CA15F90B87BF6335898B0B655
2308chrome.exeC:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\metadata\LOG.oldtext
MD5:2EEC433BC07CBE6217FF2FE9A6349517
SHA256:1DC570726CB2D3E914AD4417CC972D4EA2395AFB66F386DBBE14BA2AA4201DAE
2308chrome.exeC:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Platform Notifications\LOG.old~RF19450e.TMPtext
MD5:E676B1781336C37C788020925FA0DD89
SHA256:1EF860D10921500E86D7E0C3F5A12F29E940AB6FE99B3AD6E1E83831FE95B32C
2308chrome.exeC:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\LOG.old~RF19475f.TMP
MD5:
SHA256:
2308chrome.exeC:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\LOG.old
MD5:
SHA256:
2308chrome.exeC:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\shared_proto_db\LOG.old~RF19454c.TMPtext
MD5:D141FAA5722E06B14D8A95CA35D558CF
SHA256:5ADDBC9BE332DB0493438A2DEB9AE2FA4DC229FA52785DEF80F53BD594B9FB7D
2308chrome.exeC:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Platform Notifications\LOG.oldtext
MD5:BAA1F6FEC89D0358EE8E515254EF8019
SHA256:B76B868960E7005E9F1A29C1A6CF298257BBBBD5D936A355C3EA172BF65EA4CB
2308chrome.exeC:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extension State\LOG.old~RF194637.TMPtext
MD5:B5E55E1471D8BF954337879C53C5BDCE
SHA256:91CE82AFB9D29EB21CAD1F4A7283D3F0C3C8DD91446E623D0D7208BA3DD3F0B6
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
20
TCP/UDP connections
20
DNS requests
20
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
860
svchost.exe
HEAD
200
34.104.35.123:80
http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/adtp63xadzqu6yysjolme33hjxoq_20220505/dhlpobdgcjafebgbbhjdnapejmpkgiie_20220505_all_adfdqqtvlhuhhtrt6irlkpynghca.crx3
unknown
whitelisted
860
svchost.exe
GET
206
34.104.35.123:80
http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/adtp63xadzqu6yysjolme33hjxoq_20220505/dhlpobdgcjafebgbbhjdnapejmpkgiie_20220505_all_adfdqqtvlhuhhtrt6irlkpynghca.crx3
unknown
whitelisted
860
svchost.exe
GET
206
34.104.35.123:80
http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/adtp63xadzqu6yysjolme33hjxoq_20220505/dhlpobdgcjafebgbbhjdnapejmpkgiie_20220505_all_adfdqqtvlhuhhtrt6irlkpynghca.crx3
unknown
whitelisted
860
svchost.exe
GET
206
34.104.35.123:80
http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/adtp63xadzqu6yysjolme33hjxoq_20220505/dhlpobdgcjafebgbbhjdnapejmpkgiie_20220505_all_adfdqqtvlhuhhtrt6irlkpynghca.crx3
unknown
whitelisted
860
svchost.exe
GET
206
34.104.35.123:80
http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/adtp63xadzqu6yysjolme33hjxoq_20220505/dhlpobdgcjafebgbbhjdnapejmpkgiie_20220505_all_adfdqqtvlhuhhtrt6irlkpynghca.crx3
unknown
whitelisted
860
svchost.exe
GET
206
34.104.35.123:80
http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/adtp63xadzqu6yysjolme33hjxoq_20220505/dhlpobdgcjafebgbbhjdnapejmpkgiie_20220505_all_adfdqqtvlhuhhtrt6irlkpynghca.crx3
unknown
whitelisted
860
svchost.exe
GET
206
34.104.35.123:80
http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/adtp63xadzqu6yysjolme33hjxoq_20220505/dhlpobdgcjafebgbbhjdnapejmpkgiie_20220505_all_adfdqqtvlhuhhtrt6irlkpynghca.crx3
unknown
whitelisted
860
svchost.exe
GET
206
34.104.35.123:80
http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/adtp63xadzqu6yysjolme33hjxoq_20220505/dhlpobdgcjafebgbbhjdnapejmpkgiie_20220505_all_adfdqqtvlhuhhtrt6irlkpynghca.crx3
unknown
whitelisted
860
svchost.exe
GET
200
34.104.35.123:80
http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/lnu3li27zsanbe2hcsfjuvm5fq_1.0.7.1744928549/laoigpblnllgcgjnjnllmfolckpjlhki_1.0.7.1744928549_all_ady56p6vtubsna6mhkx6lu2qml3a.crx3
unknown
whitelisted
860
svchost.exe
HEAD
200
34.104.35.123:80
http://edgedl.me.gvt1.com/edgedl/release2/chrome_component/lnu3li27zsanbe2hcsfjuvm5fq_1.0.7.1744928549/laoigpblnllgcgjnjnllmfolckpjlhki_1.0.7.1744928549_all_ady56p6vtubsna6mhkx6lu2qml3a.crx3
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4
System
192.168.100.255:137
whitelisted
224.0.0.252:5355
whitelisted
3524
chrome.exe
74.125.133.84:443
accounts.google.com
GOOGLE
US
whitelisted
1080
svchost.exe
224.0.0.252:5355
whitelisted
2308
chrome.exe
239.255.255.250:1900
whitelisted
3524
chrome.exe
142.250.186.42:443
safebrowsing.googleapis.com
GOOGLE
US
whitelisted
3524
chrome.exe
18.66.112.71:443
download.specopssoft.com
AMAZON-02
US
suspicious
4
System
192.168.100.255:138
whitelisted
3524
chrome.exe
142.250.185.238:443
sb-ssl.google.com
GOOGLE
US
whitelisted
2308
chrome.exe
224.0.0.251:5353
unknown

DNS requests

Domain
IP
Reputation
google.com
  • 142.250.186.46
whitelisted
download.specopssoft.com
  • 18.66.112.71
  • 18.66.112.98
  • 18.66.112.86
  • 18.66.112.25
unknown
accounts.google.com
  • 74.125.133.84
whitelisted
safebrowsing.googleapis.com
  • 142.250.186.42
whitelisted
sb-ssl.google.com
  • 142.250.185.238
whitelisted
www.google.com
  • 172.217.16.196
  • 172.217.18.4
whitelisted
www.googleapis.com
  • 172.217.16.202
  • 142.250.186.74
  • 142.250.184.234
  • 172.217.23.106
  • 216.58.206.74
  • 142.250.181.234
  • 142.250.186.170
  • 142.250.185.234
  • 172.217.18.10
  • 142.250.186.138
  • 216.58.212.170
  • 142.250.186.42
  • 172.217.16.138
  • 142.250.184.202
  • 216.58.206.42
  • 142.250.186.106
whitelisted
update.googleapis.com
  • 142.250.185.99
whitelisted
edgedl.me.gvt1.com
  • 34.104.35.123
whitelisted
clients1.google.com
  • 142.250.184.206
whitelisted

Threats

No threats detected
No debug info