Are these strange URLs being accessed by WIndows / Windows services legitimate?

B

Bob Riddle

While researching unrelated network problems, I put a TCP tracker in place and filtered out known good activity. I saw Windows components accessing URL's with odd and concerning URL names. I set blocks that resolved these URLs to 0.0.0.0 and looked for accesses to that blocked IP address.These URLS were "effortstation.co" and delightful-flower-(9-digit hex-looking number".[single digit number].azurestaticapps.netI was surprised to see that at least 8 of my Windows services were accessing one or the other. Blocking those accesses caused other new failures in request by various WIndows serv

Continue reading...
 
Back
Top Bottom