Hello, Any help would be most appreciated. I can see from my firewall logs that most every computer on my network tries to download via port 80, Microsoft CAB files starting every 3 hour, all day.
The sources seem to be a248.e.akamai.net.: 223.223.168.72 , 223.223.168.75
The CAB files are in the form of like:
http://packages.dmd.metaservices.microsoft.com/prod/e/e4b67688-f989-45cb-be0c-0d784f688844.devicemetadata-ms
http://packages.dmd.metaservices.microsoft.com/prod/c/cb8cde09-0a44-4553-beb4-b256d395cf9c.devicemetadata-ms
http://packages.dmd.metaservices.microsoft.com/prod/5/5fa6f611-de9a-4d93-b522-4e279f10d300.devicemetadata-ms
I understand these look to be device metadata packages for some piece or pieces of hardware, but I'm wondering if this is a normal behavior, and why every machine is doing this?
Is this a form of Windows update?
My firewall heavy handle this packet download, if possible to block computer from download these packet?
Thanks all for every command.