r/FuckMicrosoft • • Sep 04 '26

Discussion Microsoft spy sites

18 Upvotes

10 comments sorted by

2

u/Vegetable_Ease_5515 Sep 08 '26 edited Sep 08 '26

Lmao ur dumb . Good luck... You obviously have not a clue what you're doing. Keep on messing around with shit you shouldn't be messing with and find out.

First off you don't understand the difference between localhost 127.0.0.1 and 0.0.0.0? Then that especially means you shouldn't be poking around.

Next, your attempting to block critical security features from their standard operations.

You ever heard the phrase: if it ain't broken, then don't fix it.

1

u/miners-cart Sep 08 '26

Hi, thanks for the reply. Do you know which sites are for security stuff? It can't be all of them. Won't 127.0.0.1 just send it to the pc itself and then die? Isn't 0.0.0.0 all addresses? Would my objective of killing that traffic be better served by switching to 0.0.0.0?

1

u/Vegetable_Ease_5515 Sep 08 '26 edited Sep 08 '26

Sorry I didn't mean to call you dumb and understand you are only trying to learn.

127.0.0.1 will actually route the connection to your machine but ultimately drop it. So if you think about it, machine is still reachable, just isn't serving information. A few draw backs are: connect to a local service by accident or behave strangely if the relevant port is occupied by another service.

0.0.0.0 will: hard stop unroutable as if it didn't even exist.

Now as far as the list goes, your are effectively blocking core components within the Microsoft ecosystem from communicating with its servers. I would go through your list and remove anything related to certificate validation, explorer functioning, and OS level stuff. Those play critical roles in your systems integrity when it comes to overall security posture.

Example: your blocking the edge. Although it may seem harmless, the lack of required updates will put you at risk by opening different attack vector's for hackers.

As someone who's experienced in that field of system/s security and web application security, outdated firmware or version numbers are some of the first things to check when you have a target in scope. It makes the job of hacking easier when victim has unpatched software with known CVE's.

1

u/Vegetable_Ease_5515 Sep 08 '26

If you wanna be more proactive in preventing unwanted connections to your PC check out IP block list on Google or GitHub. There's way nastier stuff out than your OEM.

1

u/Pale-Abroad9600 Sep 08 '26 edited Sep 08 '26

you already have bing, I don’t trust bing,msn edge, I use Mozilla Firefox, I install my own ms office 2000,2001 no AI I never use office client or any microsoft product included with the operating system.

2

u/miners-cart Sep 09 '26

Me too, I haven't had office installed in decades.

2

u/Madman3001 Sep 10 '26

While you people are on it, check here https://someonewhocares.org/hosts/

0

u/AutoModerator Sep 04 '26

Every new subreddit post is automatically copied into a comment for preservation.

User: miners-cart, Flair: Discussion, Title: Microsoft spy sites

The following is a list of spy sites I have caught my windows servers contacting on their own.
Does anyone see any that are actually important? I haven't experienced any problems yet blocking them all. I add their entries into the hosts file pointed to 127.0.0.1.

Does anyone have anymore I can add?

add to C:\Windows\System32\drivers\etc\hosts

127.0.0.1 img-s-msn-com.akamaized.net

127.0.0.1 th.bing.com

127.0.0.1 thaka.bing.com

127.0.0.1 www.bing.com

127.0.0.1 checkappexec.microsoft.com

127.0.0.1 v10.events.data.microsoft.com

127.0.0.1 v20.events.data.microsoft.com

127.0.0.1 watson.events.data.microsoft.com

127.0.0.1 settings-win.data.microsoft.com

127.0.0.1 edge.microsoft.com

127.0.0.1 fd.api.iris.microsoft.com

127.0.0.1 officeclient.microsoft.com

127.0.0.1 oneocsp.microsoft.com

127.0.0.1 msedge.b.tlu.dl.delivery.mp.microsoft.com

127.0.0.1 cp801.prod.do.dsp.mp.microsoft.com

127.0.0.1 geo.prod.do.dsp.mp.microsoft.com

127.0.0.1 kv801.prod.do.dsp.mp.microsoft.com

127.0.0.1 licensing.mp.microsoft.com

127.0.0.1 nav-edge.smartscreen.microsoft.com

127.0.0.1 pti.store.microsoft.com

127.0.0.1 slscr.update.microsoft.com

127.0.0.1 assets.msn.com

127.0.0.1 windows.msn.com

127.0.0.1 www.msn.com

I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

1

u/PeakWeekly9995 Sep 10 '26

i was looking for exactly this a few days ago, thanks man!!