File name:

PowerISO8.exe

Full analysis: https://app.any.run/tasks/fdff85db-ce17-42dd-ad1d-a0713c1ddcff
Verdict: Malicious activity
Analysis date: February 27, 2024, 09:47:41
OS: Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:
MIME: application/x-dosexec
File info: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
MD5:

E266C762C389D911887606E3D9BE7B1C

SHA1:

F79243622E0ABD9456E82030081BC158D2455F91

SHA256:

A636A22BA499261BF77B114676F49241F9C4532D586BB206DB1CBDDCB9C6BF8D

SSDEEP:

98304:mnPdd1Pa0NsvNK/kACe9y0LvlDF2wverroL7ILVodKLnflsLqGFATvqkm9msapOm:Uag1gd4U

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    • Drops the executable file immediately after the start

      • PowerISO8.exe (PID: 2852)
    • Creates a writable file in the system directory

      • PowerISO8.exe (PID: 2852)
    • Registers / Runs the DLL via REGSVR32.EXE

      • PowerISO8.exe (PID: 2852)
    • Changes the autorun value in the registry

      • PowerISO8.exe (PID: 2852)
  • SUSPICIOUS

    • Malware-specific behavior (creating "System.dll" in Temp)

      • PowerISO8.exe (PID: 2852)
    • The process creates files with name similar to system file names

      • PowerISO8.exe (PID: 2852)
    • Reads settings of System Certificates

      • PowerISO8.exe (PID: 2852)
    • Executable content was dropped or overwritten

      • PowerISO8.exe (PID: 2852)
    • Reads the Internet Settings

      • PowerISO8.exe (PID: 2852)
    • Creates files in the driver directory

      • PowerISO8.exe (PID: 2852)
    • Drops 7-zip archiver for unpacking

      • PowerISO8.exe (PID: 2852)
    • Drops a system driver (possible attempt to evade defenses)

      • PowerISO8.exe (PID: 2852)
    • Creates a software uninstall entry

      • PowerISO8.exe (PID: 2852)
    • Creates or modifies Windows services

      • PowerISO8.exe (PID: 2852)
    • Reads security settings of Internet Explorer

      • PowerISO8.exe (PID: 2852)
    • Creates/Modifies COM task schedule object

      • regsvr32.exe (PID: 3940)
  • INFO

    • Create files in a temporary directory

      • PowerISO8.exe (PID: 2852)
    • Reads the computer name

      • PowerISO8.exe (PID: 2852)
    • Checks supported languages

      • PowerISO8.exe (PID: 2852)
      • PWRISOVM.EXE (PID: 4044)
    • Reads the machine GUID from the registry

      • PowerISO8.exe (PID: 2852)
    • Reads Environment values

      • PowerISO8.exe (PID: 2852)
    • Reads the software policy settings

      • PowerISO8.exe (PID: 2852)
    • Creates files in the program directory

      • PowerISO8.exe (PID: 2852)
    • Application launched itself

      • msedge.exe (PID: 1860)
      • msedge.exe (PID: 2892)
    • Manual execution by a user

      • msedge.exe (PID: 1860)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Win32 Executable MS Visual C++ (generic) (42.2)
.exe | Win64 Executable (generic) (37.3)
.dll | Win32 Dynamic Link Library (generic) (8.8)
.exe | Win32 Executable (generic) (6)
.exe | Generic Win/DOS Executable (2.7)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2019:12:16 00:50:53+00:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, 32-bit
PEType: PE32
LinkerVersion: 6
CodeSize: 26112
InitializedDataSize: 141824
UninitializedDataSize: 2048
EntryPoint: 0x350d
OSVersion: 4
ImageVersion: 6
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 8.7.0.0
ProductVersionNumber: 8.7.0.0
FileFlagsMask: 0x0000
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: English (U.S.)
CharacterSet: Windows, Latin1
CompanyName: Power Software Ltd
FileDescription: PowerISO Setup
FileVersion: 8.7.0.0
LegalCopyright: Copyright(c) 2004-2023
ProductName: PowerISO Setup
ProductVersion: 8.7.0.0
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
56
Monitored processes
17
Malicious processes
1
Suspicious processes
0

Behavior graph

Click at the process to see the details
start poweriso8.exe regsvr32.exe no specs regsvr32.exe no specs pwrisovm.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe msedge.exe no specs msedge.exe no specs msedge.exe msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs poweriso8.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
1816"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1504 --field-trial-handle=1368,i,12462186664968179934,4790203699862606050,131072 /prefetch:3C:\Program Files\Microsoft\Edge\Application\msedge.exe
msedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
1836regsvr32.exe /s /u "C:\Program Files\PowerISO\PWRISOSH.DLL"C:\Windows\System32\regsvr32.exePowerISO8.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Microsoft(C) Register Server
Exit code:
3
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
Modules
Images
c:\windows\system32\regsvr32.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
1860"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --flag-switches-begin --flag-switches-end --do-not-de-elevate http://www.poweriso.com/thankyou.htmC:\Program Files\Microsoft\Edge\Application\msedge.exe
explorer.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
2000"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1004 --field-trial-handle=1304,i,10530546163825348166,4603048466346845933,131072 /prefetch:3C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
2208"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\admin\AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Crashpad" "--metrics-dir=C:\Users\admin\AppData\Local\Microsoft\Edge\User Data" --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=109.0.5414.149 "--annotation=exe=C:\Program Files\Microsoft\Edge\Application\msedge.exe" --annotation=plat=Win32 "--annotation=prod=Microsoft Edge" --annotation=ver=109.0.1518.115 --initial-client-data=0xc8,0xcc,0xd0,0x9c,0xd8,0x6bb5f598,0x6bb5f5a8,0x6bb5f5b4C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
2308"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --use-gl=angle --use-angle=swiftshader-webgl --mojo-platform-channel-handle=1508 --field-trial-handle=1368,i,12462186664968179934,4790203699862606050,131072 /prefetch:2C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
2632"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=renderer --first-renderer-process --lang=en-US --js-flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=6 --mojo-platform-channel-handle=2188 --field-trial-handle=1368,i,12462186664968179934,4790203699862606050,131072 /prefetch:1C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
2668"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=renderer --lang=en-US --js-flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --mojo-platform-channel-handle=2200 --field-trial-handle=1368,i,12462186664968179934,4790203699862606050,131072 /prefetch:1C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
2852"C:\Users\admin\AppData\Local\Temp\PowerISO8.exe" C:\Users\admin\AppData\Local\Temp\PowerISO8.exe
explorer.exe
User:
admin
Company:
Power Software Ltd
Integrity Level:
HIGH
Description:
PowerISO Setup
Exit code:
0
Version:
8.7.0.0
Modules
Images
c:\users\admin\appdata\local\temp\poweriso8.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
2892"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --single-argument http://www.poweriso.com/thankyou.htmC:\Program Files\Microsoft\Edge\Application\msedge.exePowerISO8.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
Total events
10 129
Read events
10 011
Write events
103
Delete events
15

Modification events

(PID) Process:(2852) PowerISO8.exeKey:HKEY_CURRENT_USER\Software\PowerISO
Operation:writeName:TbInstallFlag
Value:
0
(PID) Process:(2852) PowerISO8.exeKey:HKEY_CURRENT_USER\Software\PowerISO
Operation:writeName:TbInstallFlag2
Value:
0
(PID) Process:(2852) PowerISO8.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\PowerISO8_RASAPI32
Operation:writeName:EnableFileTracing
Value:
0
(PID) Process:(2852) PowerISO8.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\PowerISO8_RASAPI32
Operation:writeName:EnableConsoleTracing
Value:
0
(PID) Process:(2852) PowerISO8.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\PowerISO8_RASAPI32
Operation:writeName:FileTracingMask
Value:
(PID) Process:(2852) PowerISO8.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\PowerISO8_RASAPI32
Operation:writeName:ConsoleTracingMask
Value:
(PID) Process:(2852) PowerISO8.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\PowerISO8_RASAPI32
Operation:writeName:MaxFileSize
Value:
1048576
(PID) Process:(2852) PowerISO8.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\PowerISO8_RASAPI32
Operation:writeName:FileDirectory
Value:
%windir%\tracing
(PID) Process:(2852) PowerISO8.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\PowerISO8_RASMANCS
Operation:writeName:EnableFileTracing
Value:
0
(PID) Process:(2852) PowerISO8.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\PowerISO8_RASMANCS
Operation:writeName:EnableConsoleTracing
Value:
0
Executable files
17
Suspicious files
53
Text files
49
Unknown types
30

Dropped files

PID
Process
Filename
Type
2852PowerISO8.exeC:\Program Files\PowerISO\Lang\SimpChinese.lngbinary
MD5:0141EBFDE7CF2B57D6E679BE189DAE36
SHA256:9B17B55CABC0F7AE7485C62CDA0B94868752D23EBC02DF8B78CFBC2D2BD83F71
2852PowerISO8.exeC:\Users\admin\AppData\Local\Temp\nsl369F.tmpexecutable
MD5:E2399827F98C20DFF849BAF9703B76EE
SHA256:EE90EE53CACAAB34EB38CF4A130AC2196B02BC16E46BA99752129C01E329978D
2852PowerISO8.exeC:\Program Files\PowerISO\Lang\Polish.lngbinary
MD5:A197D6AAE21B87F4CCA43D754ED77BA4
SHA256:F927648298D7BF84A70B37261ECB9967903F8549CDAE05ADF625F664F78C2FAC
2852PowerISO8.exeC:\Program Files\PowerISO\Lang\TradChinese.lngbinary
MD5:52CF4BA46679FC398E6C48D9A2E0B9CF
SHA256:2659DF8E77660B90B842BF5BDE4390C7B1E371ABF27A62C28B0AF20CFA37FBFB
2852PowerISO8.exeC:\Program Files\PowerISO\Lang\Italian.lngbinary
MD5:766381F22083BA756B40BD27DEF353CC
SHA256:5112942389D0981C36797F1451FA336B5CEF488CE49B9CC6B5D46CFA9357C1E3
2852PowerISO8.exeC:\Users\admin\AppData\Local\Temp\nswF762.tmp\nsrF82E.tmpexecutable
MD5:C3B224D15A9036805575B2FF0BCEFEDA
SHA256:23D8AEFF49FFBAC9F9490E9739E059CD7064516DBCD693FE2DE77830B127FF8A
2852PowerISO8.exeC:\Program Files\PowerISO\Lang\Lithuanian.lngbinary
MD5:071CE70A4CD0FAD14C843E8A02B159AF
SHA256:3C2103115E8D1F5251A5294605E2863387D9921A43530571CDB2BB43F63EBA4D
2852PowerISO8.exeC:\Program Files\PowerISO\Lang\Arabic.lngbinary
MD5:DF394959EB900BC4500324B7E1A674F1
SHA256:566220BD0BADC31C82CEEDCE53CB17B8C009E2AE5C1DF4E32690274D3511B014
2852PowerISO8.exeC:\Program Files\PowerISO\Lang\Spanish.lngbinary
MD5:BA8BD5031A2AF05EBA064B08E2305B3A
SHA256:CADAC9FC02EFB5922DC5CB89878DE1228FDD10CD50CCC930F3BEBB90313B2CB6
2852PowerISO8.exeC:\Program Files\PowerISO\Lang\German.lngbinary
MD5:05EFC5B28E145190A0CB4B615AB1F5E8
SHA256:8FE3D31AF7A105C136D99FBA1B44A332ABF15AA71A107B2D19D672DF0A66A1D0
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
6
TCP/UDP connections
18
DNS requests
15
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
1816
msedge.exe
GET
200
216.92.201.29:80
http://www.poweriso.com/images/blank.gif
unknown
image
46 b
unknown
1816
msedge.exe
GET
200
216.92.201.29:80
http://www.poweriso.com/thankyou.htm
unknown
html
4.17 Kb
unknown
1816
msedge.exe
GET
216.92.201.29:80
http://www.poweriso.com/images/thank-you-logo.gif
unknown
unknown
1816
msedge.exe
GET
200
216.92.201.29:80
http://www.poweriso.com/images/check.gif
unknown
image
1.02 Kb
unknown
1816
msedge.exe
GET
200
216.92.201.29:80
http://www.poweriso.com/images/thank-you-bg1.gif
unknown
image
1.03 Kb
unknown
1816
msedge.exe
GET
216.92.201.29:80
http://www.poweriso.com/images/thank-you-bg.gif
unknown
unknown
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4
System
192.168.100.255:138
whitelisted
4
System
192.168.100.255:137
whitelisted
1080
svchost.exe
224.0.0.252:5355
unknown
2852
PowerISO8.exe
18.66.121.169:443
d2cfmvh5x2q5u0.cloudfront.net
AMAZON-02
US
unknown
2852
PowerISO8.exe
3.160.156.226:443
d2szyrfwv98jnz.cloudfront.net
US
unknown
1860
msedge.exe
239.255.255.250:1900
unknown
1816
msedge.exe
13.107.42.16:443
config.edge.skype.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
whitelisted
1816
msedge.exe
13.107.22.239:443
edge.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
unknown
1816
msedge.exe
216.92.201.29:80
www.poweriso.com
PAIR-NETWORKS
US
unknown
1816
msedge.exe
142.250.186.104:443
www.googletagmanager.com
GOOGLE
US
unknown

DNS requests

Domain
IP
Reputation
d2cfmvh5x2q5u0.cloudfront.net
  • 18.66.121.169
  • 18.66.121.157
  • 18.66.121.24
  • 18.66.121.190
unknown
d2szyrfwv98jnz.cloudfront.net
  • 3.160.156.226
  • 3.160.156.167
  • 3.160.156.108
  • 3.160.156.122
unknown
www.poweriso.com
  • 216.92.201.29
unknown
edge.microsoft.com
  • 13.107.22.239
  • 131.253.33.239
whitelisted
config.edge.skype.com
  • 13.107.42.16
whitelisted
www.googletagmanager.com
  • 142.250.186.104
whitelisted
region1.google-analytics.com
  • 216.239.34.36
  • 216.239.32.36
whitelisted
www.bing.com
  • 23.37.226.107
  • 23.53.43.112
  • 23.37.226.112
  • 23.37.226.114
  • 23.53.43.98
  • 23.37.226.106
  • 23.53.43.107
  • 23.37.226.113
  • 23.53.43.99
whitelisted

Threats

No threats detected
No debug info