File name:

jBridgev1.6b3Setup.exe

Full analysis: https://app.any.run/tasks/4d251a8d-ae43-4b1f-aacd-ce1e43d152e6
Verdict: Malicious activity
Analysis date: October 19, 2024, 23:03:32
OS: Windows 10 Professional (build: 19045, 64 bit)
Indicators:
MIME: application/x-dosexec
File info: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
MD5:

F3888D8D74CABC3954AA7EA8CF22D117

SHA1:

A8BCB49BE956B92EBB35F043EC69E7995BB8968F

SHA256:

B7BB0B578819E2ECBBB661B2F5A63EF5DE1C34ED1CD110A484289980DA38D8C4

SSDEEP:

24576:W6BHyo5n6BIMs0WLQUwZ0rrt62Mq1FBiKL2NcGcga0ilAc2u6Ehu+2xBU400:W6Hyo56BIMs0iQU4ert62Mq1FBiKL2N9

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Executable content was dropped or overwritten

      • jBridgev1.6b3Setup.exe (PID: 608)
    • Creates a software uninstall entry

      • jBridgev1.6b3Setup.exe (PID: 608)
    • Reads security settings of Internet Explorer

      • jBridgev1.6b3Setup.exe (PID: 608)
    • The process creates files with name similar to system file names

      • jBridgev1.6b3Setup.exe (PID: 608)
    • Start notepad (likely ransomware note)

      • jBridgev1.6b3Setup.exe (PID: 608)
  • INFO

    • Create files in a temporary directory

      • jBridgev1.6b3Setup.exe (PID: 608)
    • Creates files in the program directory

      • jBridgev1.6b3Setup.exe (PID: 608)
    • Checks supported languages

      • jBridgev1.6b3Setup.exe (PID: 608)
      • jBridger.exe (PID: 6212)
    • Reads the computer name

      • jBridgev1.6b3Setup.exe (PID: 608)
      • jBridger.exe (PID: 6212)
    • The process uses the downloaded file

      • jBridgev1.6b3Setup.exe (PID: 608)
    • Process checks computer location settings

      • jBridgev1.6b3Setup.exe (PID: 608)
    • Reads security settings of Internet Explorer

      • notepad.exe (PID: 5444)
    • Manual execution by a user

      • jBridger.exe (PID: 6212)
      • jBridger.exe (PID: 4304)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | NSIS - Nullsoft Scriptable Install System (94.8)
.exe | Win32 Executable MS Visual C++ (generic) (3.4)
.dll | Win32 Dynamic Link Library (generic) (0.7)
.exe | Win32 Executable (generic) (0.5)
.exe | Generic Win/DOS Executable (0.2)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2009:12:05 22:50:52+00:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, 32-bit
PEType: PE32
LinkerVersion: 6
CodeSize: 24064
InitializedDataSize: 164864
UninitializedDataSize: 1024
EntryPoint: 0x30fa
OSVersion: 4
ImageVersion: 6
SubsystemVersion: 4
Subsystem: Windows GUI
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
257
Monitored processes
117
Malicious processes
1
Suspicious processes
0

Behavior graph

Click at the process to see the details
start jbridgev1.6b3setup.exe notepad.exe no specs jbridger.exe no specs jbridger.exe sppextcomobj.exe no specs slui.exe no specs auxhost64.exe no specs auxhost.exe no specs auxhost64.exe no specs auxhost64.exe no specs auxhost64.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost64.exe no specs auxhost64.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost64.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost64.exe no specs auxhost.exe no specs auxhost.exe no specs auxhost.exe no specs jbridgev1.6b3setup.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
608"C:\Users\admin\AppData\Local\Temp\jBridgev1.6b3Setup.exe" C:\Users\admin\AppData\Local\Temp\jBridgev1.6b3Setup.exe
explorer.exe
User:
admin
Integrity Level:
HIGH
Exit code:
0
Modules
Images
c:\users\admin\appdata\local\temp\jbridgev1.6b3setup.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\user32.dll
616"C:\Program Files\JBridge\auxhost.exe" ANALYZEC:\Program Files\JBridge\auxhost.exejBridger.exe
User:
admin
Integrity Level:
HIGH
Exit code:
0
Modules
Images
c:\program files\jbridge\auxhost.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\user32.dll
c:\windows\syswow64\win32u.dll
1048"C:\Program Files\JBridge\auxhost.exe" ANALYZEC:\Program Files\JBridge\auxhost.exejBridger.exe
User:
admin
Integrity Level:
HIGH
Exit code:
0
Modules
Images
c:\program files\jbridge\auxhost.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\user32.dll
c:\windows\syswow64\win32u.dll
1160"C:\Users\admin\AppData\Local\Temp\jBridgev1.6b3Setup.exe" C:\Users\admin\AppData\Local\Temp\jBridgev1.6b3Setup.exeexplorer.exe
User:
admin
Integrity Level:
MEDIUM
Exit code:
3221226540
Modules
Images
c:\users\admin\appdata\local\temp\jbridgev1.6b3setup.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
1372"C:\Program Files\JBridge\auxhost.exe" ANALYZEC:\Program Files\JBridge\auxhost.exejBridger.exe
User:
admin
Integrity Level:
HIGH
Exit code:
0
Modules
Images
c:\program files\jbridge\auxhost.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\user32.dll
c:\windows\syswow64\win32u.dll
1732"C:\Program Files\JBridge\auxhost.exe" ANALYZEC:\Program Files\JBridge\auxhost.exejBridger.exe
User:
admin
Integrity Level:
HIGH
Exit code:
0
Modules
Images
c:\program files\jbridge\auxhost.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\user32.dll
c:\windows\syswow64\win32u.dll
1952"C:\Program Files\JBridge\auxhost.exe" ANALYZEC:\Program Files\JBridge\auxhost.exejBridger.exe
User:
admin
Integrity Level:
HIGH
Exit code:
0
Modules
Images
c:\program files\jbridge\auxhost.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\user32.dll
c:\windows\syswow64\win32u.dll
2000"C:\Program Files\JBridge\auxhost.exe" ANALYZEC:\Program Files\JBridge\auxhost.exejBridger.exe
User:
admin
Integrity Level:
HIGH
Exit code:
0
Modules
Images
c:\program files\jbridge\auxhost.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\user32.dll
c:\windows\syswow64\win32u.dll
2420"C:\Program Files\JBridge\auxhost.exe" ANALYZEC:\Program Files\JBridge\auxhost.exejBridger.exe
User:
admin
Integrity Level:
HIGH
Exit code:
0
Modules
Images
c:\program files\jbridge\auxhost.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\user32.dll
c:\windows\syswow64\win32u.dll
3104"C:\Program Files\JBridge\auxhost.exe" ANALYZEC:\Program Files\JBridge\auxhost.exejBridger.exe
User:
admin
Integrity Level:
HIGH
Exit code:
0
Modules
Images
c:\program files\jbridge\auxhost.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\user32.dll
c:\windows\syswow64\win32u.dll
Total events
5 430
Read events
5 412
Write events
18
Delete events
0

Modification events

(PID) Process:(608) jBridgev1.6b3Setup.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\JBridge\InstallDir
Operation:writeName:JBridge
Value:
C:\Program Files\JBridge
(PID) Process:(608) jBridgev1.6b3Setup.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\JBridge
Operation:writeName:Proxy64
Value:
C:\Program Files\JBridge\Proxy64.dll
(PID) Process:(608) jBridgev1.6b3Setup.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\JBridge
Operation:writeName:Proxy32
Value:
C:\Program Files\JBridge\Proxy32.dll
(PID) Process:(608) jBridgev1.6b3Setup.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\JBridge
Operation:writeName:DisplayName
Value:
JBridge
(PID) Process:(608) jBridgev1.6b3Setup.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\JBridge
Operation:writeName:UninstallString
Value:
C:\Program Files\JBridge\Uninstall.exe
(PID) Process:(608) jBridgev1.6b3Setup.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\JBridge
Operation:writeName:InstallLocation
Value:
C:\Program Files\JBridge
(PID) Process:(608) jBridgev1.6b3Setup.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\JBridge
Operation:writeName:Publisher
Value:
JBridge
(PID) Process:(608) jBridgev1.6b3Setup.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\JBridge
Operation:writeName:NoRepair
Value:
1
(PID) Process:(608) jBridgev1.6b3Setup.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\JBridge
Operation:writeName:NoModify
Value:
1
(PID) Process:(608) jBridgev1.6b3Setup.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.txt\OpenWithProgids
Operation:writeName:txtfile
Value:
Executable files
12
Suspicious files
2
Text files
4
Unknown types
0

Dropped files

PID
Process
Filename
Type
608jBridgev1.6b3Setup.exeC:\Users\admin\AppData\Local\Temp\nssB511.tmp\modern-wizard.bmpimage
MD5:CBE40FD2B1EC96DAEDC65DA172D90022
SHA256:3AD2DC318056D0A2024AF1804EA741146CFC18CC404649A44610CBF8B2056CF2
608jBridgev1.6b3Setup.exeC:\Users\admin\AppData\Local\Temp\nssB511.tmp\ioSpecial.initext
MD5:E2D5070BC28DB1AC745613689FF86067
SHA256:D95AED234F932A1C48A2B1B0D98C60CA31F962310C03158E2884AB4DDD3EA1E0
608jBridgev1.6b3Setup.exeC:\Program Files\JBridge\Proxy64.dllexecutable
MD5:8CEA889193A81CB1C73AA150B1395026
SHA256:2907D59F9A206BE704CFF59F368A194F4B8BFCAC8F9F1A45A1904AFFAB47749E
608jBridgev1.6b3Setup.exeC:\Program Files\JBridge\Proxy32.dllexecutable
MD5:D0930BB3CD3C75EB8B2BB8E5D1F35CA2
SHA256:D4EDE18C6F16F0EEB60057643F8AFD806F4CF68D17C40C497D0F5B7FEC1FC16B
608jBridgev1.6b3Setup.exeC:\Program Files\JBridge\Bridger32.dllexecutable
MD5:5BB5E0876FEC70020526806137F8111F
SHA256:0227BB3D22489613FD5FC7DE9D28DAB5200DEBA36BC2951CA1CA0CA3AA6551A4
608jBridgev1.6b3Setup.exeC:\Program Files\JBridge\plugin_name.32.dllexecutable
MD5:1FA991B95D052768052A9124E1DD755E
SHA256:103FD8A42135D60F292775551AF824410419DB7F2661C0B7D4221BA47F352A4D
608jBridgev1.6b3Setup.exeC:\Program Files\JBridge\plugin_name.64.dllexecutable
MD5:42B66230365270A3FC80FA8D782B1412
SHA256:7E9CE081F78E646FD5D664771628FBF32C7C88E99FFF5EF59B0F35A64CB13DA4
608jBridgev1.6b3Setup.exeC:\Program Files\JBridge\auxhost_default_settings.txttext
MD5:E40BBCC87209C7495C4D0501D3286DF0
SHA256:10B7122589B803D4A13F53AFE8B597270833896B1C133639ABC7A34C21C81F93
608jBridgev1.6b3Setup.exeC:\ProgramData\Microsoft\Windows\Start Menu\Programs\jBridge\jBridger.lnklnk
MD5:C23DABD7DC87655F2A8E8964E69CE819
SHA256:8941C34AC5C41D01F2AE56C60AEB9B2E81FBC5E38745F967929E336D691B48EB
608jBridgev1.6b3Setup.exeC:\Program Files\JBridge\Uninstall.exeexecutable
MD5:448F5897773CCB40B0D0E6464A1AAC81
SHA256:8B8CFEECD5A515C15B4AA67B3EBEB4CA59AE374233E36C1C39AFEB4184F32403
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
10
TCP/UDP connections
64
DNS requests
26
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
4360
SearchApp.exe
GET
200
192.229.221.95:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTrjrydRyt%2BApF3GSPypfHBxR5XtQQUs9tIpPmhxdiuNkHMEWNpYim8S8YCEAI5PUjXAkJafLQcAAsO18o%3D
unknown
whitelisted
4360
SearchApp.exe
GET
200
192.229.221.95:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAn5bsKVVV8kdJ6vHl3O1J0%3D
unknown
whitelisted
2724
svchost.exe
GET
200
192.229.221.95:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
4360
SearchApp.exe
GET
200
192.229.221.95:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAUZZSZEml49Gjh0j13P68w%3D
unknown
whitelisted
6944
svchost.exe
GET
200
2.16.164.49:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
4360
SearchApp.exe
GET
200
192.229.221.95:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEApDqVCbATUviZV57HIIulA%3D
unknown
whitelisted
5792
backgroundTaskHost.exe
GET
200
192.229.221.95:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAn5bsKVVV8kdJ6vHl3O1J0%3D
unknown
whitelisted
6944
svchost.exe
GET
200
95.101.149.131:80
http://www.microsoft.com/pkiops/crl/MicSecSerCA2011_2011-10-18.crl
unknown
whitelisted
7364
SIHClient.exe
GET
200
23.35.229.160:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
7364
SIHClient.exe
GET
200
23.35.229.160:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4
System
192.168.100.255:137
whitelisted
6944
svchost.exe
51.124.78.146:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
7060
RUXIMICS.exe
51.124.78.146:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
5488
MoUsoCoreWorker.exe
51.124.78.146:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
4360
SearchApp.exe
2.23.209.133:443
www.bing.com
Akamai International B.V.
GB
whitelisted
4360
SearchApp.exe
192.229.221.95:80
ocsp.digicert.com
EDGECAST
US
whitelisted
4
System
192.168.100.255:138
whitelisted
2.23.209.133:443
www.bing.com
Akamai International B.V.
GB
whitelisted
4360
SearchApp.exe
2.23.209.187:443
www.bing.com
Akamai International B.V.
GB
whitelisted
2724
svchost.exe
20.190.159.23:443
login.live.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted

DNS requests

Domain
IP
Reputation
settings-win.data.microsoft.com
  • 51.124.78.146
whitelisted
www.bing.com
  • 2.23.209.133
  • 2.23.209.130
  • 2.23.209.187
  • 92.123.104.32
  • 92.123.104.34
whitelisted
ocsp.digicert.com
  • 192.229.221.95
whitelisted
google.com
  • 216.58.206.78
whitelisted
th.bing.com
  • 2.23.209.187
  • 2.23.209.133
  • 2.23.209.130
whitelisted
login.live.com
  • 20.190.159.23
  • 40.126.31.73
  • 20.190.159.68
  • 40.126.31.71
  • 20.190.159.73
  • 20.190.159.64
  • 40.126.31.67
  • 40.126.31.69
whitelisted
r.bing.com
  • 2.23.209.187
  • 2.23.209.130
  • 2.23.209.133
whitelisted
browser.pipe.aria.microsoft.com
  • 20.189.173.24
whitelisted
fp.msedge.net
  • 204.79.197.222
whitelisted
go.microsoft.com
  • 184.28.89.167
whitelisted

Threats

No threats detected
No debug info