https://helgeklein.com/blog/windows-os-services-apps-network-connection-target-hosts/ [ ] Search * About * Blog Archive Helge Klein Menu * SetACL + About SetACL o Feature set o FAQ o Changelog + Documentation o Command Line-Version (SetACL.exe) o COM Version (SetACL.dll) + Examples o Managing File System Permissions o Managing Registry Permissions o Managing Printer, Service, WMI and Share Permissions o Setting permissions and blocking inheritance from C# o Setting the Owner from VBScript o Locking and Unlocking the Registry * SetACL Studio + Features + Screenshots + FAQ * Delprof2 * Download * HAUS21 + Warme-/Kaltequellen: Geothermie, Eisspeicher, Luft-Warmepumpe + Heizen und Kuhlen mit Eisspeicher: Details + Heizen/Kuhlen: Fussboden vs. Decke vs. Wand + Bauteilaktivierung: Kuhlung der Betondecken + Photovoltaik und Stromspeicher + Kontrollierte Wohnraumluftung (KWL) + Baustoffe: viel Poroton & Lehm, wenig Beton, kein Rigips + Altersgerechtigkeit und Barrierefreiheit + Smart Home: das vernetzte Haus + Beteiligte Firmen * About * Blog Archive by Helge Klein, last updated March 27, 2021, in * Networking * Security Windows OS, Services & Apps: Network Connection Target Hosts Contents * TL;DR * About This Data + What Is This List? + Where Does the Data Come From? * List of Windows OS & UPW Apps Network Connection Target Hosts This post lists the internet communication targets of the Microsoft Windows operating system, including its various services and UWP apps. This post is a part of my application network connection monitoring series, a group of articles that explain how to analyze the network traffic of any Windows or macOS app. The series consists of the following articles: * Part 1: explanation of the methodology * Part 2: list of MS Office & Teams communication targets * Part 3 (this article): list of Windows, OS services & UWP apps communication targets * Part 4: list of Citrix CVAD communication targets * Part 5: list of Adobe Acrobat Reader, Photoshop, & Creative Cloud communication targets TL;DR The Microsoft Windows operating system talks to 291 hosts and 2,764 IPs on the internet. List of URLs & details below. About This Data What Is This List? The table below lists the internet hosts the Microsoft Windows operating system, including its various services and UWP apps communicated with in a real environment. For each application, the table shows: * Application name * Application version(s) * Process(es) of the application * Number of distinct target IP addresses * Names and ports of the target hosts Where Does the Data Come From? The data was collected in vast limits' internal network by uberAgent, our endpoint monitoring and analytics product. The data spans a 30-day time range in early 2021. The table contains metadata of actual network communications. It is accurate and complete insofar as I did not alter anything. I did, however, remove some internal systems and the results of manual web browsing (or similar). Some hostnames may be specific to our location (Germany). List of Windows OS & UPW Apps Network Connection Target Hosts # Application App version(s) Process(es) Target Targets IPs 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 18363.1379 BDESVC 19041.746 svchost.exe 1 enterpriseregistration.windows.net:443 19041.804 19042.746 19042.789 19042.804 7601 9600 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 18363.1379 enterpriseregistration.windows.net:443 BitLocker Drive Encryption Service 19041.746 svchost.exe 2 ocsp.digicert.com:80 19041.804 status.rapidssl.com:80 19042.746 19042.789 19042.804 7601 9600 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 18363.1379 activity.windows.com:443 CDPUserSvc 19041.746 svchost.exe 4 enterprise.activity.windows.com:443 19041.804 19042.746 19042.789 19042.804 7601 9600 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 18363.1379 aad.cs.dds.microsoft.com:443 Connected Devices Platform Service 19041.746 svchost.exe 1 continuum.dds.microsoft.com:443 19041.804 cs.dds.microsoft.com:443 19042.746 19042.789 19042.804 7601 9600 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 activity.windows.com:443 18363.1379 discover.aadrm.com:443 Connected Devices Platform User Service 19041.746 svchost.exe 15 enterprise.activity.windows.com:443 19041.804 substrate.office.com:443 19042.746 19042.789 19042.804 7601 9600 11.tlu.dl.delivery.mp.microsoft.com:80 2.au.download.windowsupdate.com:80 2.tlu.dl.delivery.mp.microsoft.com:80 14393.4169 3.au.download.windowsupdate.com:80 14393.4225 au.download.windowsupdate.com:80 17763.1697 crl.apple.com:80 17763.1757 crl.comodoca.com:80 18363.1316 crl.globalsign.net:80 18363.1379 crl.identrust.com:80 Cryptographic Services 19041.746 svchost.exe 340 crl.usertrust.com:80 19041.804 crl.verisign.com:80 19042.746 crl3.digicert.com:80 19042.789 ctldl.windowsupdate.com:80 19042.804 dl.delivery.mp.microsoft.com:80 7601 download.windowsupdate.com:80 9600 ocsp.comodoca.com:80 ocsp.digicert.com:80 ocsp.globalsign.com:80 ocsp2.globalsign.com:80 status.rapidssl.com:80 11.au.download.windowsupdate.com:80 11.tlu.dl.delivery.mp.microsoft.com:80 2.au.download.windowsupdate.com:80 2.tlu.dl.delivery.mp.microsoft.com:80 3.au.download.windowsupdate.com:80 3.tlu.dl.delivery.mp.microsoft.com:80 9.tlu.dl.delivery.mp.microsoft.com:80 array602.prod.do.dsp.mp.microsoft.com:443 array603.prod.do.dsp.mp.microsoft.com:443 array604.prod.do.dsp.mp.microsoft.com:443 array605.prod.do.dsp.mp.microsoft.com:443 array606.prod.do.dsp.mp.microsoft.com:443 array607.prod.do.dsp.mp.microsoft.com:443 array608.prod.do.dsp.mp.microsoft.com:443 array609.prod.do.dsp.mp.microsoft.com:443 array610.prod.do.dsp.mp.microsoft.com:443 array611.prod.do.dsp.mp.microsoft.com:443 14393.4169 array612.prod.do.dsp.mp.microsoft.com:443 14393.4225 array614.prod.do.dsp.mp.microsoft.com:443 17763.1697 array615.prod.do.dsp.mp.microsoft.com:443 17763.1757 array616.prod.do.dsp.mp.microsoft.com:443 18363.1316 array801.prod.do.dsp.mp.microsoft.com:443 18363.1379 array805.prod.do.dsp.mp.microsoft.com:443 Delivery Optimization 19041.746 svchost.exe 431 array808.prod.do.dsp.mp.microsoft.com:443 19041.804 array810.prod.do.dsp.mp.microsoft.com:443 19042.746 array812.prod.do.dsp.mp.microsoft.com:443 19042.789 array813.prod.do.dsp.mp.microsoft.com:443 19042.804 au.download.windowsupdate.com:80 7601 cp501.prod.do.dsp.mp.microsoft.com:443 9600 cp601.prod.do.dsp.mp.microsoft.com:443 cp801.prod.do.dsp.mp.microsoft.com:443 ctldl.windowsupdate.com:80 disc601.prod.do.dsp.mp.microsoft.com:443 disc801.prod.do.dsp.mp.microsoft.com:443 dl.delivery.mp.microsoft.com:80 download.windowsupdate.com:80 emdl.ws.microsoft.com:80 geo.prod.do.dsp.mp.microsoft.com:443 geover.prod.do.dsp.mp.microsoft.com:443 kv501.prod.do.dsp.mp.microsoft.com:443 kv601.prod.do.dsp.mp.microsoft.com:443 kv801.prod.do.dsp.mp.microsoft.com:443 msedge.b.tlu.dl.delivery.mp.microsoft.com:80 msedge.f.dl.delivery.mp.microsoft.com:80 officecdn.microsoft.com.edgesuite.net:80 officecdn.microsoft.com:80 tlu.dl.delivery.mp.microsoft.com:80 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 crl3.digicert.com:80 18363.1379 displaycatalog.mp.microsoft.com:443 Device Setup Manager 19041.746 svchost.exe 26 dmd.metaservices.microsoft.com:80 19041.804 go.microsoft.com:80 19042.746 ocsp.digicert.com:80 19042.789 19042.804 7601 9600 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 18363.1379 dmd.metaservices.microsoft.com:80 DsmSvc 19041.746 svchost.exe 2 go.microsoft.com:80 19041.804 19042.746 19042.789 19042.804 7601 9600 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 18363.1379 Group Policy Client 19041.746 backgroundTaskHost.exe 2 login.live.com:443 19041.804 19042.746 19042.789 19042.804 7601 9600 LocalBridge 18.2006.1031.0 LocalBridge.exe 5 config.edge.skype.com:443 18.2008.1271.0 officehomeblobs.blob.core.windows.net:443 14393.4169 14393.4225 17763.1697 crl3.digicert.com:80 17763.1757 ctldl.windowsupdate.com:80 18363.1316 login.live.com:443 18363.1379 login.microsoftonline.com:443 Microsoft Account Sign-in Assistant 19041.746 svchost.exe 48 ocsp.digicert.com:80 19041.804 status.geotrust.com:80 19042.746 sv.symcb.com:80 19042.789 www.tm.a.prd.aadg.akadns.net:443 19042.804 7601 9600 1.3.117.29 1.3.119.43 msedge.api.cdp.microsoft.com:443 Microsoft Edge Update 1.3.121.21 MicrosoftEdgeUpdate.exe 24 msedge.b.tlu.dl.delivery.mp.microsoft.com:80 1.3.133.5 ocsp.digicert.com:80 1.3.135.29 self.events.data.microsoft.com:443 1.3.135.41 1.37.200.3 ClientHealthEval.exe fef.amsub0302.manage.microsoft.com:443 Microsoft Intune Management Extension 1.38.300.1 Microsoft.Management.Services.IntuneWindowsAgent.exe 3 manage.microsoft.com:443 1.39.200.3 r.manage.microsoft.com:443 am3pap004.storage.live.com:443 api.onedrive.com:443 arc.msn.com:443 config.teams.microsoft.com:443 ctldl.windowsupdate.com:80 g.live.com:443 login.live.com:443 login.microsoftonline.com:443 logincdn.msauth.net:443 19.192.0926.0012 mobile.pipe.aria.microsoft.com:443 20.114.0607.0002 FileCoAuth.exe ocsp.digicert.com:80 Microsoft OneDrive 20.169.0823.0006 OneDrive.exe 132 oneclient.sfx.ms:443 20.169.0823.0008 OneDriveStandaloneUpdater.exe onedriveclucprodbn20007.blob.core.windows.net:443 20.201.1005.0009 onedriveclucprodbn20010.blob.core.windows.net:443 21.002.0104.0005 onedriveclucprodbn20036.blob.core.windows.net:443 onedriveclucproddm20012.blob.core.windows.net:443 onedriveclucproddm20013.blob.core.windows.net:443 onedriveclucproddm20030.blob.core.windows.net:443 par02p.wns.windows.com:443 skydrive.wns.windows.com:443 status.rapidssl.com:80 sv.symcb.com:80 v10.events.data.microsoft.com:443 www.microsoft.com:80 Microsoft Update Health Tools 2.70.0.0 uhssvc.exe 1 payloadprod15.blob.core.windows.net:443 Microsoft Windows Malicious Software 5.85.17731.1 MRT.exe 7 wdcp.microsoft.com:443 Removal Tool 5.86.17836.1 wdcpalt.microsoft.com:443 11.au.download.windowsupdate.com:80 11.tlu.dl.delivery.mp.microsoft.com:80 2.au.download.windowsupdate.com:80 2.tlu.dl.delivery.mp.microsoft.com:80 3.au.download.windowsupdate.com:80 3.tlu.dl.delivery.mp.microsoft.com:80 7.au.download.windowsupdate.com:80 9.au.download.windowsupdate.com:80 9.tlu.dl.delivery.mp.microsoft.com:80 adl.windows.com:80 array507.prod.do.dsp.mp.microsoft.com:443 array508.prod.do.dsp.mp.microsoft.com:443 array509.prod.do.dsp.mp.microsoft.com:443 array601.prod.do.dsp.mp.microsoft.com:443 array607.prod.do.dsp.mp.microsoft.com:443 array614.prod.do.dsp.mp.microsoft.com:443 array809.prod.do.dsp.mp.microsoft.com:443 array810.prod.do.dsp.mp.microsoft.com:443 array812.prod.do.dsp.mp.microsoft.com:443 au.download.windowsupdate.com:80 bg2.v4.a.dl.ws.microsoft.com:80 bg2.v4.emdl.ws.microsoft.com:80 bg4.ds.a.dl.ws.microsoft.com:80 bg4.ds.emdl.ws.microsoft.com:80 bg5.v4.a.dl.ws.microsoft.com:80 bg5.v4.emdl.ws.microsoft.com:80 browser.events.data.msn.com:443 browser.pipe.aria.microsoft.com:443 ccs.play.king.com:443 cdn.onenote.net:443 checkappexec.microsoft.com:443 client.wns.windows.com:443 clients2.google.com:443 collections.mp.microsoft.com:443 cp501.prod.do.dsp.mp.microsoft.com:443 cp601.prod.do.dsp.mp.microsoft.com:443 cp801.prod.do.dsp.mp.microsoft.com:443 crl.comodoca.com:80 crl.identrust.com:80 crl3.digicert.com:80 crl4.digicert.com:80 cs.dds.microsoft.com:443 ctldl.windowsupdate.com:80 d23iz4esrwkib6.cloudfront.net:80 db3pap001.settings.live.net:443 db3pap001.storage.live.com:443 disc501.prod.do.dsp.mp.microsoft.com:443 disc601.prod.do.dsp.mp.microsoft.com:443 disc801.prod.do.dsp.mp.microsoft.com:443 discover.aadrm.com:443 displaycatalog.mp.microsoft.com:443 dl.delivery.mp.microsoft.com:80 dmd.metaservices.microsoft.com:80 download.windowsupdate.com:80 emdl.ws.microsoft.com:80 enrollment.manage.microsoft.com:443 enterpriseregistration.windows.net:443 fe2.update.microsoft.com:443 fe2.ws.microsoft.com:443 fe2cr.update.microsoft.com:443 fe3.delivery.mp.microsoft.com:443 fe3cr.delivery.mp.microsoft.com:443 fef.amsub0302.manage.microsoft.com:443 fs.microsoft.com:443 g.live.com:443 AppHostRegistrationVerifier.exe geo.prod.do.dsp.mp.microsoft.com:443 BitLockerDeviceEncryption.exe geover.prod.do.dsp.mp.microsoft.com:443 CompatTelRunner.exe go.microsoft.com:443 DeviceCensus.exe go.microsoft.com:80 DeviceEnroller.exe has.spserv.microsoft.com:443 EngHost.exe iecvlist.microsoft.com:443 InstallAgentUserBroker.exe inference.location.live.net:443 LogonUI.exe kv501.prod.do.dsp.mp.microsoft.com:443 MoUsoCoreWorker.exe kv601.prod.do.dsp.mp.microsoft.com:443 RuntimeBroker.exe kv801.prod.do.dsp.mp.microsoft.com:443 SIHClient.exe licensing.mp.microsoft.com:443 14393.4169 SettingSyncHost.exe login.live.com:443 14393.4225 SpeechModelDownload.exe login.live.com:80 17763.1697 SpeechRuntime.exe login.microsoftonline.com:443 17763.1757 UpdateNotificationMgr.exe login.microsoftonline.us:443 18363.1316 WaaSMedicAgent.exe login.partner.microsoftonline.cn:443 18363.1379 WerFault.exe login.windows-ppe.net:443 Microsoft Windows OS 19041.746 backgroundTaskHost.exe 895 login.windows.net:443 19041.804 browser_broker.exe manage.devcenter.microsoft.com:443 19042.746 cleanmgr.exe manage.microsoft.com:443 19042.789 cmd.exe maps.windows.com:443 19042.804 dmclient.exe mobile.pipe.aria.microsoft.com:443 7601 dxgiadaptercache.exe msdl.microsoft.com:443 9600 explorer.exe msedge.b.tlu.dl.delivery.mp.microsoft.com:80 lsass.exe msedge.f.dl.delivery.mp.microsoft.com:80 omadmclient.exe nav.smartscreen.microsoft.com:443 powershell_ise.exe ocsp.comodoca.com:80 rundll32.exe ocsp.digicert.cn:80 signtool.exe ocsp.digicert.com:80 slui.exe ocsp.globalsign.com:80 smartscreen.exe ocsp.godaddy.com:80 svchost.exe ocsp.msocsp.com:80 taskhostw.exe ocsp.sectigo.com:80 usocoreworker.exe ocsp2.globalsign.com:80 wermgr.exe officecdn.microsoft.com.edgesuite.net:80 wuauclt.exe officecdn.microsoft.com:80 oneclient.sfx.ms:443 onegetcdn.azureedge.net:443 oneocsp.microsoft.com:80 outlook.office365.com:443 par02p.wns.windows.com:443 pool.ntp.org:123 portal.manage-dogfood.microsoft.com:443 portal.manage-ppe.microsoftonline.cn:443 portal.manage-selfhost.microsoft.com:443 portal.manage.microsoft.us:443 portal.manage.microsoftonline.cn:443 pti.store.microsoft.com:443 purchase.mp.microsoft.com:443 r.manage.microsoft.com:443 r1--sn-4g5e6nlk.gvt1.com:80 r1--sn-4g5e6nzz.gvt1.com:80 r1--sn-4g5ednle.gvt1.com:80 r2--sn-4g5e6nsz.gvt1.com:80 r2--sn-4g5edne7.gvt1.com:80 r2--sn-4g5ednsk.gvt1.com:80 r3--sn-4g5e6nez.gvt1.com:80 r3--sn-4g5e6nzs.gvt1.com:80 r3.o.lencr.org:80 r4--sn-4g5e6nsz.gvt1.com:80 r5--sn-4g5edns6.gvt1.com:80 redirector.gvt1.com:80 self.events.data.microsoft.com:443 settings-win.data.microsoft.com:443 settings.data.microsoft.com:443 share.microsoft.com:443 sls.update.microsoft.com:443 slscr.update.microsoft.com:443 smartscreen-prod.microsoft.com:443 statsfe2.update.microsoft.com:80 statsfe2.ws.microsoft.com:80 storage.googleapis.com:443 storage.googleapis.com:80 store-images.s-microsoft.com:80 storecatalogrevocation.storequality.microsoft.com:443 substrate.office.com:443 sv.symcd.com:80 telecommand.telemetry.microsoft.com:443 tile-service.weather.microsoft.com:80 timestamp.digicert.com:80 to-do.microsoft.com:443 tsfe.trafficshaping.dsp.mp.microsoft.com:443 updates.logitech.com:80 v10.events.data.microsoft.com:443 v10.vortex-win.data.microsoft.com:443 v20.events.data.microsoft.com:443 validation-v2.sls.microsoft.com:443 vsblobprodscussu5shard10.blob.core.windows.net:443 vsblobprodscussu5shard12.blob.core.windows.net:443 vsblobprodscussu5shard26.blob.core.windows.net:443 vsblobprodscussu5shard3.blob.core.windows.net:443 vsblobprodscussu5shard50.blob.core.windows.net:443 vsblobprodscussu5shard67.blob.core.windows.net:443 vsblobprodscussu5shard88.blob.core.windows.net:443 watson.telemetry.microsoft.com:443 whiteboard.microsoft.com:443 whiteboard.ms:443 windows.policies.live.net:443 www.microsoft.com:80 www.powershellgallery.com:443 www.telecommandsvc.microsoft.com:443 Microsoft.549981C3F5F10 2.2007.24732.0 Cortana.exe 1 settings-win.data.microsoft.com:443 Microsoft.People 10.1909.10841.0 backgroundTaskHost.exe 4 graph.microsoft.com:443 10.1909.12456.0 ocsp.digicert.com:80 az667904.vo.msecnd.net:443 az700632.vo.msecnd.net:443 Microsoft.ServiceHub.Controller 1.3.2175297764 Microsoft.ServiceHub.Controller.exe 3 az779572.vo.msecnd.net:443 2.7.1004420301 az861674.vo.msecnd.net:443 msedge.b.tlu.dl.delivery.mp.microsoft.com:443 vortex.data.microsoft.com:443 arc.msn.com:443 crl3.digicert.com:80 10.0.18362.449 BackgroundTransferHost.exe img-prod-cms-rt-microsoft-com.akamaized.net:443 Microsoft.Windows.ContentDeliveryManager 10.0.19041.423 backgroundTaskHost.exe 33 mucp.api.account.microsoft.com:443 ocsp.digicert.com:80 ris.api.iris.microsoft.com:443 sv.symcb.com:80 b-ring.msedge.net:443 eafddirect.msedge.net:443 fp-vp-nocache.azureedge.net:443 SearchUI.exe fp.msedge.net:443 Microsoft.Windows.Cortana 1.13.0.18362 backgroundTaskHost.exe 12 l-ring.msedge.net:443 msedge.b.tlu.dl.delivery.mp.microsoft.com:443 ocsp.digicert.com:80 r.bing.com:443 www.bing.com:443 api.onedrive.com:443 crl3.digicert.com:80 db3pap001.settings.live.net:443 db3pap001.storage.live.com:443 2020.20070.10002.0 evoke-windowsservices-tas.msedge.net:443 Microsoft.Windows.Photos 2020.20110.11001.0 Microsoft.Photos.exe 8 ocsp.digicert.com:80 outlookmobile-office365-tas.msedge.net:443 settings-win.data.microsoft.com:443 settings.data.microsoft.com:443 storage.live.com:443 visualstudio-devdiv-c2s.msedge.net:443 ocsp.digicert.com:80 outlook.office365.com:443 Microsoft.Windows.Search 1.14.0.19041 SearchApp.exe 26 r.bing.com:443 substrate.office.com:443 www.bing.com:443 ocsp.digicert.com:80 Microsoft.WindowsFeedbackHub 1.2006.10051.0 PilotshubApp.exe 3 settings-win.data.microsoft.com:443 uif.microsoft.com:443 assets.onestore.ms:443 cid-ef9da447e9880355.users.storage.live.com:443 cid-fd728fd8cdb9865d.users.storage.live.com:443 img-prod-cms-rt-microsoft-com.akamaized.net:443 livetileedge.dsx.mp.microsoft.com:443 Microsoft.WindowsStore 12008.1001.1.0 WinStore.App.exe 42 maps.windows.com:443 12011.1001.1.0 ocsp.digicert.com:80 status.rapidssl.com:80 store-images.s-microsoft.com:443 store-images.s-microsoft.com:80 storeedgefd.dsx.mp.microsoft.com:443 www.microsoft.com:443 crl3.digicert.com:80 dlassets-ssl.xboxlive.com:443 Microsoft.XboxGamingOverlay 5.420.11102.0 BackgroundTransferHost.exe 22 ocsp.digicert.com:80 5.420.8043.0 GameBar.exe settings-win.data.microsoft.com:443 settings.data.microsoft.com:443 www.xboxab.com:443 1.20081.116.0 crl3.digicert.com:80 1.20082.141.0 evoke-windowsservices-tas.msedge.net:443 Microsoft.YourPhone 1.20112.72.0 YourPhone.exe 2 ocsp.digicert.com:80 1.20122.119.0 backgroundTaskHost.exe ocsp.omniroot.com:80 1.21011.101.0 outlookmobile-office365-tas.msedge.net:443 1.21011.127.0 visualstudio-devdiv-c2s.msedge.net:443 Microsoft.ZuneMusic 10.20122.11121.0 Music.UI.exe 2 cloudcollection-ssl.xboxlive.com:443 musicimage.xboxlive.com:443 10.20032.16211.0 crl3.digicert.com:80 Microsoft.ZuneVideo 10.20112.10111.0 Video.UI.exe 5 ocsp.digicert.com:80 settings-ssl.xboxlive.com:443 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 18363.1379 Network Location Awareness 19041.746 svchost.exe 1 www.msftconnecttest.com:80 19041.804 19042.746 19042.789 19042.804 7601 9600 a-ring.msedge.net:443 a.config.skype.com:443 api.aps.skype.com:443 api.asm.skype.com:443 api3.cc.skype.com:443 avatar.skype.com:443 azeus1-client-s.gateway.messenger.live.com:443 b-ring.msedge.net:443 b.config.skype.com:443 browser.pipe.aria.microsoft.com:443 client-s.gateway.messenger.live.com:443 config.edge.skype.com:443 consumer.entitlement.skype.com:443 contacts.skype.com:443 download.visualstudio.microsoft.com:443 edge.skype.com:443 flighting.cc.skype.com:443 fp.config.skype.com:443 fpc.msedge.net:443 8.63 get.skype.com:443 Skype 8.67 Skype.exe 135 go.trouter.skype.com:443 8.68 ic3.events.data.microsoft.com:443 k-ring.msedge.net:443 login.live.com:443 login.microsoftonline.com:443 mobile.pipe.aria.microsoft.com:443 ms-dotnettools.gallerycdn.vsassets.io:443 msgsearch.skype.com:443 options.skype.com:443 outlook.live.com:443 people.skype.com:443 pipe.skype.com:443 pnv.skype.com:443 prod.registrar.skype.com:443 s-ring.msedge.net:443 static-asm.secure.skypeassets.com:443 static.asm.skype.com:443 trouter-neu-a.trouter.skype.com:443 trouter-neu-b.trouter.skype.com:443 v10.events.data.microsoft.com:443 v20.events.data.microsoft.com:443 www.msftconnecttest.com:80 SysInfoCap 1.28.2197.0 SysInfoCap.exe 6 ctldl.windowsupdate.com:80 ocsp.digicert.com:80 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 18363.1379 settings-win.data.microsoft.com:443 Update Orchestrator Service 19041.746 svchost.exe 4 settings.data.microsoft.com:443 19041.804 19042.746 19042.789 19042.804 7601 9600 4.10.0209.0 definitionupdates.microsoft.com:443 4.18.2011.6 go.microsoft.com:443 Windows Defender 4.18.2101.4 MpCmdRun.exe 15 go.microsoft.com:80 4.18.2101.8 MsMpEng.exe wdcp.microsoft.com:443 4.18.2101.9 wdcpalt.microsoft.com:443 www.microsoft.com:443 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 settings-win.data.microsoft.com:443 Windows Insider Service 18363.1379 svchost.exe 2 settings.data.microsoft.com:443 19041.746 19041.804 19042.746 19042.789 19042.804 Windows Installer - Unicode 5.0.14393.2430 msiexec.exe 2 ocsp.digicert.com:80 5.0.19041.1 payloadprod15.blob.core.windows.net:443 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 18363.1379 licensing.mp.microsoft.com:443 Windows License Manager Service 19041.746 svchost.exe 21 storecatalogrevocation.storequality.microsoft.com:443 19041.804 substrate.office.com:443 19042.746 19042.789 19042.804 7601 9600 14393.4169 14393.4225 17763.1697 17763.1757 Windows Push Notifications System 18363.1316 Service 18363.1379 svchost.exe 2 client.wns.windows.com:443 19041.746 19041.804 19042.746 19042.789 19042.804 14393.4169 14393.4225 17763.1697 17763.1757 assets.msn.com:443 18363.1316 cdn.content.prod.cms.msn.com:80 18363.1379 cdn.onenote.net:443 Windows Push Notifications User Service 19041.746 svchost.exe 168 service.weather.microsoft.com:443 19041.804 spclient.wg.spotify.com:443 19042.746 tile-service.weather.microsoft.com:80 19042.789 19042.804 7601 9600 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 exchange-assets.azureedge.net:443 Windows PushToInstall Service 18363.1379 svchost.exe 2 pti.store.microsoft.com:443 19041.746 19041.804 19042.746 19042.789 19042.804 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 18363.1379 Windows Time 19041.746 svchost.exe 1 time.windows.com:123 19041.804 19042.746 19042.789 19042.804 7601 9600 11.au.download.windowsupdate.com:80 11.tlu.dl.delivery.mp.microsoft.com:80 14393.4169 2.au.download.windowsupdate.com:80 14393.4225 3.au.download.windowsupdate.com:80 17763.1697 au.download.windowsupdate.com:80 17763.1757 ctldl.windowsupdate.com:80 18363.1316 dl.delivery.mp.microsoft.com:80 18363.1379 download.windowsupdate.com:80 Windows Update 19041.746 svchost.exe 173 fe2.update.microsoft.com:443 19041.804 fe2cr.update.microsoft.com:443 19042.746 fe3.delivery.mp.microsoft.com:443 19042.789 fe3cr.delivery.mp.microsoft.com:443 19042.804 officecdn.microsoft.com.edgesuite.net:80 7601 settings-win.data.microsoft.com:443 9600 sls.update.microsoft.com:443 slscr.update.microsoft.com:443 substrate.office.com:443 tsfe.trafficshaping.dsp.mp.microsoft.com:443 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 18363.1379 settings-win.data.microsoft.com:443 Windows Update Medic Service 19041.746 svchost.exe 2 settings.data.microsoft.com:443 19041.804 19042.746 19042.789 19042.804 7601 9600 14393.4169 14393.4225 17763.1697 17763.1757 18363.1316 assets.msn.com:443 18363.1379 cdn.content.prod.cms.msn.com:80 WpnUserService 19041.746 svchost.exe 10 service.weather.microsoft.com:443 19041.804 tile-service.weather.microsoft.com:80 19042.746 19042.789 19042.804 7601 9600 14393.4169 14393.4225 17763.1697 17763.1757 device.auth.xboxlive.com:443 18363.1316 title.auth.xboxlive.com:443 Xbox Live Auth Manager 18363.1379 svchost.exe 14 title.mgt.xboxlive.com:443 19041.746 user.auth.xboxlive.com:443 19041.804 xsts.auth.xboxlive.com:443 19042.746 19042.789 19042.804 microsoft.microsoftskydrive 19.23.11.0 WWAHost.exe 37 browser.pipe.aria.microsoft.com:443 ocsp.digicert.com:80 evoke-windowsservices-tas.msedge.net:443 ocsp.digicert.com:80 ocsp.globalsign.com:80 oneocsp.microsoft.com:80 microsoft.windowscommunicationsapps 16005.13426.20368.0 HxTsr.exe 52 outlook.office.com:443 16005.13426.20566.0 outlook.office365.com:443 outlookmobile-office365-tas.msedge.net:443 settings-win.data.microsoft.com:443 settings.data.microsoft.com:443 www.microsoft.com:80 cxcs.microsoft.net:443 ocsp.digicert.com:80 windows.immersivecontrolpanel 10.0.2.1000 SystemSettings.exe 15 onecs-live.azureedge.net:443 r.bing.com:443 www.bing.com:443 * Applications * Monitoring * Network * Services * UWP * Windows * Windows 10 Share this post * * * About the Author Helge Klein (ex CTP, MVP and vExpert) worked as a consultant and developer before founding vast limits, the uberAgent company. Helge applied his extensive knowledge in IT infrastructure projects and architected the user profile management product whose successor is now available as Citrix Profile Management. Helge is the author of the popular tools Delprof2 and SetACL. He has presented at Citrix Synergy, BriForum, E2EVC, Splunk .conf and many other events. Helge is very active in the IT community and has co-founded Virtualization Community NRW (VCNRW). Read more Previous Article MS Office & Teams: Network Connection Target Hosts Next Article Anatomy of WerFault.exe's Application Crash Error Reporting 2 Comments * OJ Bender May 27, 2022 at 12:16 Which of the hosts are necessary to keep the OS functioning and which can be blocked? Reply * Snoopy May 27, 2022 at 20:39 Dear Helge, thanks for all your excellent work and insights. Do you have findings on what data is actually sent, like user activity monitoring etc. and how it is used/analysed by M$ and others? Have you or others asked M$ to comment? Thank you! Reply Leave a Reply Cancel reply Your email address will not be published. Required fields are marked * [ ] [ ] [ ] [ ] [ ] [ ] [ ] Comment * [ ] [ ] Name * [ ] Email * [ ] Website [ ] [ ] Save my name, email, and website in this browser for the next time I comment. [Post Comment] Related Posts Adobe Acrobat & Photoshop: Network Connection Target Hosts [Adobe-Acrobat-Photoshop-network-connection-target-hosts-] This post lists the internet communication targets of Adobe Acrobat Reader, Photoshop, and Creative Cloud. This post is a part of my application network connection monitoring series, a group of [...] Read more by Helge Klein on March 22, 2021 * Networking * Security Citrix CVAD: Network Connection Target Hosts [Citrix-CVAD-network-connection-target-hosts-400x225] This post lists the internet communication targets of Citrix Virtual Apps and Desktops (formerly XenApp/XenDesktop). This post is a part of my application network connection monitoring series, a group of [...] Read more by Helge Klein on March 15, 2021 * Networking * Security MS Office & Teams: Network Connection Target Hosts [Microsoft-Office-talks-to-internet-hosts-IPs-400x225] This post lists the internet communication targets of Microsoft Office and Teams. It is a part of my application network connection monitoring series, a group of articles that explain how [...] Read more by Helge Klein on February 22, 2021 * Networking * Security Application Network Connection Monitoring With Splunk & uberAgent [Afon-Mawddach-400x300] This is part 1 of my application network connection monitoring series, a group of articles that explain how to analyze the network traffic of any Windows or macOS app. Read more by Helge Klein on February 16, 2021 * Networking * Security Latest Posts Split-Tunnel VPN & WiFi: No Internet via IPv4 Due to Interface Priority [pexels-harrison-haines-3536263-400x266] I had a weird issue on my laptop: whenever I connected to our company's VPN, I lost local internet connectivity. As it turned out, this was caused by incorrect network [...] Read more by Helge Klein on April 7, 2022 * Networking Controlling RGB Keyboard Lighting Without Bloated Vendor Software [Razer-Uninstalling-400x250] Vendors in the gaming space often make wonderful keyboards, but their software is not always up to par. Take the Razer Huntsman Elite: its software is a whopping 422 MB [...] Read more by Helge Klein on October 23, 2021 * Hardware Free Services to Send Files End-To-End Encrypted [mailbox-341744-400x300] There are a number of services for sending files to someone else that are both free and secure. This post provides an overview. Read more by Helge Klein on August 31, 2021 * Applications ShareX: Free Screen Recording Tool & Mouse Pointer Offset Fix [ShareX-4K-high-DPI-mouse-poi] This is a quick post to remind me of two things: 1) ShareX is the tool of choice for screen recordings on Windows. 2) On high-DPI (4K) screens there is [...] Read more by Helge Klein on July 30, 2021 * Applications (c) 2022 Helge Klein * Imprint * Privacy Policy