General Info

File name

new 2.txt

Full analysis
https://app.any.run/tasks/b90e5187-ce6b-4084-8f0d-3dd6c7157e24
Verdict
Malicious activity
Analysis date
6/12/2019, 04:20:28
OS:
Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:

MIME:
text/plain
File info:
ASCII text, with CRLF line terminators
MD5

a25de999af6eff367781f00991197070

SHA1

05db533977f9755d31ffd00b85f3477cb901d28c

SHA256

2bd971c41e732dc0b32577484d85318f34cac70e624966c11d0599c96baadaa4

SSDEEP

3:N8uR2NOAVVSKkmQov:2uR2ufmQy

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distored by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.

Software environment set and analysis options

Launch configuration

Task duration
120 seconds
Additional time used
60 seconds
Fakenet option
off
Heavy Evaision option
off
MITM proxy
off
Route via Tor
off
Network geolocation
off
Privacy
Public submission
Autoconfirmation of UAC
on

Software preset

  • Internet Explorer 8.0.7601.17514
  • Adobe Acrobat Reader DC MUI (15.023.20070)
  • Adobe Flash Player 26 ActiveX (26.0.0.131)
  • Adobe Flash Player 26 NPAPI (26.0.0.131)
  • Adobe Flash Player 26 PPAPI (26.0.0.131)
  • Adobe Refresh Manager (1.8.0)
  • CCleaner (5.35)
  • FileZilla Client 3.36.0 (3.36.0)
  • Google Chrome (73.0.3683.75)
  • Google Update Helper (1.3.33.23)
  • Java 8 Update 92 (8.0.920.14)
  • Java Auto Updater (2.8.92.14)
  • Microsoft .NET Framework 4.6.1 (4.6.01055)
  • Microsoft Office Access MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Access Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Excel MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office OneNote MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Outlook MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office PowerPoint MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Professional 2010 (14.0.6029.1000)
  • Microsoft Office Proof (English) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (French) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (Spanish) 2010 (14.0.6029.1000)
  • Microsoft Office Proofing (English) 2010 (14.0.6029.1000)
  • Microsoft Office Publisher MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Shared MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Shared Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Single Image 2010 (14.0.6029.1000)
  • Microsoft Office Word MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (9.0.30729.6161)
  • Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (10.0.40219)
  • Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (12.0.30501.0)
  • Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (14.15.26706.0)
  • Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706 (14.15.26706)
  • Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706 (14.15.26706)
  • Mozilla Firefox 65.0.2 (x86 en-US) (65.0.2)
  • Notepad++ (32-bit x86) (7.5.1)
  • Opera 12.15 (12.15.1748)
  • Skype version 8.29 (8.29)
  • VLC media player (2.2.6)
  • WinRAR 5.60 (32-bit) (5.60.0)

Hotfixes

  • Client LanguagePack Package
  • Client Refresh LanguagePack Package
  • CodecPack Basic Package
  • Foundation Package
  • IE Troubleshooters Package
  • InternetExplorer Optional Package
  • KB2534111
  • KB2999226
  • KB976902
  • LocalPack AU Package
  • LocalPack CA Package
  • LocalPack GB Package
  • LocalPack US Package
  • LocalPack ZA Package
  • ProfessionalEdition
  • UltimateEdition

Behavior activities

MALICIOUS SUSPICIOUS INFO

No malicious indicators.

Creates files in the program directory
  • firefox.exe (PID: 2232)
Manual execution by user
  • firefox.exe (PID: 2232)
Reads CPU info
  • firefox.exe (PID: 2232)
Application launched itself
  • firefox.exe (PID: 2232)
Creates files in the user directory
  • firefox.exe (PID: 2232)

Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report

Static information

Screenshots

Processes

Total processes
39
Monitored processes
6
Malicious processes
0
Suspicious processes
0

Behavior graph

+
start notepad.exe no specs firefox.exe firefox.exe no specs firefox.exe firefox.exe firefox.exe
Specs description
Program did not start
Integrity level elevation
Task сontains an error or was rebooted
Process has crashed
Task contains several apps running
Executable file was dropped
Debug information is available
Process was injected
Network attacks were detected
Application downloaded the executable file
Actions similar to stealing personal data
Behavior similar to exploiting the vulnerability
Inspected object has sucpicious PE structure
File is detected by antivirus software
CPU overrun
RAM overrun
Process starts the services
Process was added to the startup
Behavior similar to spam
Low-level access to the HDD
Probably Tor was used
System was rebooted
Connects to the network
Known threat

Process information

Click at the process to see the details.

PID
2952
CMD
"C:\Windows\system32\NOTEPAD.EXE" C:\Users\admin\AppData\Local\Temp\new 2.txt
Path
C:\Windows\system32\NOTEPAD.EXE
Indicators
No indicators
Parent process
––
User
admin
Integrity Level
MEDIUM
Version:
Company
Microsoft Corporation
Description
Notepad
Version
6.1.7600.16385 (win7_rtm.090713-1255)
Modules
Image
c:\windows\system32\notepad.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\shlwapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\winspool.drv
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\version.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\clbcatq.dll

PID
2232
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe"
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
––
User
admin
Integrity Level
MEDIUM
Version:
Company
Mozilla Corporation
Description
Firefox
Version
65.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\kbdus.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\psapi.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wbemcomn.dll
c:\windows\system32\wship6.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\winsta.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\mscms.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\d2d1.dll
c:\windows\system32\msimg32.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\progra~1\mozill~1\nssckbi.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\fwpuclnt.dll
c:\windows\system32\explorerframe.dll
c:\windows\system32\duser.dll
c:\windows\system32\dui70.dll
c:\windows\system32\actxprxy.dll
c:\program files\adobe\acrobat reader dc\reader\acrord32.exe

PID
3256
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2232.0.378976128\1311193333" -parentBuildID 20190225143501 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - "C:\Users\admin\AppData\LocalLow\Mozilla\Temp-{ce348e4c-7d33-445e-89f9-60108c51bcaf}" 2232 "\\.\pipe\gecko-crash-server-pipe.2232" 1132 gpu
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
No indicators
Parent process
firefox.exe
User
admin
Integrity Level
MEDIUM
Version:
Company
Mozilla Corporation
Description
Firefox
Version
65.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\mfplat.dll
c:\windows\system32\mf.dll
c:\windows\system32\atl.dll
c:\windows\system32\ksuser.dll
c:\windows\system32\dxva2.dll
c:\windows\system32\evr.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll

PID
2332
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2232.6.2138449202\70258071" -childID 1 -isForBrowser -prefsHandle 1640 -prefMapHandle 840 -prefsLen 1 -prefMapSize 180950 -schedulerPrefs 0001,2 -parentBuildID 20190225143501 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2232 "\\.\pipe\gecko-crash-server-pipe.2232" 900 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
65.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll
c:\program files\mozilla firefox\mozavutil.dll
c:\program files\mozilla firefox\mozavcodec.dll
c:\windows\system32\mfplat.dll
c:\windows\system32\mf.dll
c:\windows\system32\atl.dll
c:\windows\system32\ksuser.dll
c:\windows\system32\dxva2.dll
c:\windows\system32\evr.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\msmpeg2vdec.dll
c:\windows\system32\slc.dll
c:\windows\system32\sqmapi.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\msmpeg2adec.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll

PID
3520
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2232.13.1090331745\1604345724" -childID 2 -isForBrowser -prefsHandle 2644 -prefMapHandle 2648 -prefsLen 216 -prefMapSize 180950 -schedulerPrefs 0001,2 -parentBuildID 20190225143501 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2232 "\\.\pipe\gecko-crash-server-pipe.2232" 2660 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
65.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\nsi.dll
c:\windows\system32\ws2_32.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll

PID
2180
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2232.20.898564227\1994632680" -childID 3 -isForBrowser -prefsHandle 3376 -prefMapHandle 3408 -prefsLen 5882 -prefMapSize 180950 -schedulerPrefs 0001,2 -parentBuildID 20190225143501 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2232 "\\.\pipe\gecko-crash-server-pipe.2232" 3464 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
65.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\windows\system32\shell32.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll

Registry activity

Total events
945
Read events
943
Write events
2
Delete events
0

Modification events

PID
Process
Operation
Key
Name
Value
2232
firefox.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
2232
firefox.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
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

Files activity

Executable files
0
Suspicious files
138
Text files
35
Unknown types
72

Dropped files

PID
Process
Filename
Type
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BDB57BE16EADD7596A7F524ACE395AA4FDBB53AB
image
MD5: 2fc8f04a043701c2b9ca8efe47de29c7
SHA256: 20126830b9266270fa5a76fdd281d4cd1203a8b37bb5eaff351a565b22aab632
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.metadata
binary
MD5: 498dae4e538658a57f464748f2dabfda
SHA256: 8778f52cd9cb4f4787bf7ba18006d212f8c3004652d163f7786556a8eef3a067
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\33E13CE63D3A83B61D330673581E913A6250A660
binary
MD5: ca06dc54531c1fdfa7311c2800530ca4
SHA256: eafb9eca0075cff24b44a4d47e8dc2f60b33259b5f68127cd81f189940d58b25
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1974643F01FCF7B9A07A24CFA2574DC014239DCF
compressed
MD5: bedb282faea3c05b5447f775b6652a78
SHA256: 4761c51f7f37ab394349c76a56ae1e843e512d7a065af7ff1c18e2ec075b53a9
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6A198A5F71AED3FC52E9DD6CCE1E96330292EB72
compressed
MD5: ec80cfc77e1edbd6e55815b605a0e709
SHA256: e309d9220c84ad0d91272118fa2b5416c93b3e247afb3e9b158066640fbea211
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\684B7D994EDE2B99C28E0F32305E93FB0C90818F
compressed
MD5: cc47812cf7eb56709961293f354fcada
SHA256: 02cf6653548c6af0da8bdd1abd2afcd99bf071875ba1f9279e6b19fa12e7a59d
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: 36a64b7022afc64cae0fe8733af57773
SHA256: a0898cf3905bc2062866cecfe9b988b0a31a81d33dfbe3cce8ed384f28808cbb
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\permissions.sqlite-journal
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BDB57BE16EADD7596A7F524ACE395AA4FDBB53AB
image
MD5: d35d30be1efcae7b509702d1843134b0
SHA256: 8de5cbb03e9168e611549c2dd3d9b0caae8479b6e16e459fe37803be18b3729a
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\33E13CE63D3A83B61D330673581E913A6250A660
binary
MD5: 6a7f8630f8ed89fe5bdf42154f64494f
SHA256: f601fc87ff87e27ede08ee1a23188b63cd144b7a5610062baeadfd6159a26ef2
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6A198A5F71AED3FC52E9DD6CCE1E96330292EB72
compressed
MD5: d7d25f9d7d8b4f1198913a8fced00908
SHA256: e4a8bc90f54541a78b61af85e3e193763589041f75c9b44a568221695522a74c
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1974643F01FCF7B9A07A24CFA2574DC014239DCF
compressed
MD5: 9b9edc3789ed544d0b51c55cd0371807
SHA256: 33985a2b10057fde884aff03183f3f4248599b1e3bde53d562e00d642b0bfaeb
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\87A308AE88EB4DC6CCB341C1DE36EE03BA7E47D6
compressed
MD5: a7854b51eedadfcb5f19bf03c692e2ea
SHA256: d639a3409bb5ccb3820be766bbdee4eeabdac7df9c01d86d6244fe3678f18718
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 8a48c8452944671a3804894efdf69d6c
SHA256: f59930d514f9081fd48e230e74ebc15961ecbfe6500ba8ec1aa986346b1cac87
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: d52b84207299fde10c7153d6a68cb51e
SHA256: 401ea1171571d27a40b0eb095c6635642a30092162a28d731ba38fba02cbe72b
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4.tmp
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: 2d70238dc7896f31b8fd7af11ea5441d
SHA256: 041e187e2121ad83b18384666884b1b91c31248ea9b1990e1b5aee2fbcfe9159
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BDB57BE16EADD7596A7F524ACE395AA4FDBB53AB
image
MD5: 9d67b0bc616e24abda6012425bf35bdb
SHA256: 4a14ad9bc61b1290dff09ebc4d9610f0570d5700e5e539a632f216b2f5bf5298
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\33E13CE63D3A83B61D330673581E913A6250A660
binary
MD5: 8c3625c2a7d025528b3dc1473d7661be
SHA256: 3ee49a6d36571c32e929df63fdbed61a13dfac2e9474b73cb483097487147f62
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1974643F01FCF7B9A07A24CFA2574DC014239DCF
compressed
MD5: ef3738493266671b062b2ea38f71c1e3
SHA256: d33d7e6d7cf6f9db2bf82df9a8d03c52ad1c15078704163ef6ed1a28b0b7b92e
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6A198A5F71AED3FC52E9DD6CCE1E96330292EB72
compressed
MD5: 30b2d677606001131194e47673beb864
SHA256: 2985abd2745200edad4eea87a52258ba401b912e0ecb5e05d37bb477d394e6e6
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C50F08B3522F0513280AD41E3126BA2EC94A60BD
compressed
MD5: 4ea4fa87acf49f05827a345b7ff51838
SHA256: 30b3de641eb29095b06a9a90482ea8dce0f93eb72a1733b0a0af61901c7df86b
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\formhistory.sqlite-journal
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: 7b529066675c936284528db39b2e7412
SHA256: d7ec30b3dd64f52114a3b6c24113abb584d923ed3dd9bfd000621567db01f0da
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BDB57BE16EADD7596A7F524ACE395AA4FDBB53AB
image
MD5: f30777ec25053e164cf8c443d7f056c9
SHA256: 9b1973473ce73e73796a12a427fa5f217a8a5724990d9f1545b24adecf9e5c0b
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\33E13CE63D3A83B61D330673581E913A6250A660
binary
MD5: 1cc0b7afc0aa856e362102cbab259518
SHA256: 78b5081a382f026ae9faf20ff285d171fda0baed1f172c4cad4abb13ddd269c0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6A198A5F71AED3FC52E9DD6CCE1E96330292EB72
compressed
MD5: 03d9a170ccf093b38b386c823e497180
SHA256: e304b0db2c53be162956be555a442eefe5deefba205b2b208d77ce9744b97a0b
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 8a48c8452944671a3804894efdf69d6c
SHA256: f59930d514f9081fd48e230e74ebc15961ecbfe6500ba8ec1aa986346b1cac87
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 4d7dcb156f8f49b72393a8d13d2d52e1
SHA256: 1748619f84579b858c948297da6d451c3b04009f9408d3c705b873429a30131f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\20248
compressed
MD5: c72ba3765358f0d5492f3414d8802312
SHA256: c845e8df0250a4c901cc7a387aa94413b6d8d6d7aaaf8b2ec5f295201b7cbd89
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: 01dcba8e5e4b2328fc6a972d1ca83892
SHA256: eca4821c77587309ae91d47b575c05dc93cedd6ef4f818b2a31baf391f574915
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\13035
image
MD5: 097ecf75430656395de42c0679d9e0ba
SHA256: bca083a68c4d9e1c732f9442efa9081ca76f4047985bc691937fa20e49c6b7a0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6A198A5F71AED3FC52E9DD6CCE1E96330292EB72
compressed
MD5: 6e1a31eed89fb2f5516c05b1b4eee2b7
SHA256: 6909b4a3e11e9f23f4c313e49c6629ade582de791ccba9ec74680d8b94eded0c
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\45F23097D7267388CE0468BA881B99AACCF2155C
image
MD5: 355a83f7f47a2cf67b6957254858baf5
SHA256: 8927ac204b2e6ec4b89047331873593b485bdd8973dae494bcb847218136afe4
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\33E13CE63D3A83B61D330673581E913A6250A660
binary
MD5: c8cf1cd0b247edcf3dac65cc52881ef6
SHA256: c889287b631a3415e84803d86a3f65d4972346b19aef091cd6a8c4e062793925
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1974643F01FCF7B9A07A24CFA2574DC014239DCF
compressed
MD5: d694555c6ff89f850c61cc226f8a1c7b
SHA256: dd68f9eb078038d556a05b5060efa79d74207783925c7e8f2fff3ea4883f4979
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\20248
compressed
MD5: 292f4c98c0316a4eeccdca8ebc464de5
SHA256: da1aa0411b6a13f7e54967d360d8448b6e1460007ebdbb3cde7481379a6ff62f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6A198A5F71AED3FC52E9DD6CCE1E96330292EB72
compressed
MD5: 33714327fa6146744175f857ecbb95a1
SHA256: 2ff942753f439eeccb122c280780d3c200865a9ae4c8ffdd73daa2de96b3c709
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\324A4D40E8C0F1ECBA455FC317BC27C9B50B5BA3
compressed
MD5: d32d1adeebc57f99c2d08ee60729d2c5
SHA256: 706763cd164a6a9ae3e7cf9b2ffb98a59a038604d97920fde2b106b803fb6e3e
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: 3d297fcad1e837591254bada791b31c6
SHA256: d1cb3362f99572f34ffdaaf6a43a9e4071498b23f2c5a20486d892a5166d2dd6
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 4d7dcb156f8f49b72393a8d13d2d52e1
SHA256: 1748619f84579b858c948297da6d451c3b04009f9408d3c705b873429a30131f
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 6017db14055ab5e52ccc47b69425a212
SHA256: b53a6ad72aaddf3d5e5aa0afdc66cac5d7ab1137081b5ae5179940c71ba64747
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\45F23097D7267388CE0468BA881B99AACCF2155C
image
MD5: 097ecf75430656395de42c0679d9e0ba
SHA256: bca083a68c4d9e1c732f9442efa9081ca76f4047985bc691937fa20e49c6b7a0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\33E13CE63D3A83B61D330673581E913A6250A660
binary
MD5: e403cbcf47cd4c4e55f39b157672bd26
SHA256: e385a7e8b0533bd677dfd140978ac0d72c0b02d9ec37af98b4153c4176e7b56a
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6A198A5F71AED3FC52E9DD6CCE1E96330292EB72
compressed
MD5: 3f6f650b222b08c6a9c2cf855290c212
SHA256: f31203f9aecf25b1af08770de695440fa467b6e1c52d5150bbc6512298b664be
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1974643F01FCF7B9A07A24CFA2574DC014239DCF
compressed
MD5: 292f4c98c0316a4eeccdca8ebc464de5
SHA256: da1aa0411b6a13f7e54967d360d8448b6e1460007ebdbb3cde7481379a6ff62f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FC7DB3BC556E37D679825847AE7C9BC3EE8CE2F3
compressed
MD5: 695cd0f2c7c4fdb754d35a2e21dfbdf4
SHA256: 4dea0b74e83185c9cd121c1d121f9d277bc84976a70036f0c4cc5ff579b41a0a
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\067FB3DF6D001C1E7536DF32A5F6FBF28D7DFD4E
der
MD5: 2864cc7b255023bc78f25d4ab05c2571
SHA256: 8e7efd4cb2f7a8d6a01e5c8d788dc12eadc8c17790e38ddb0fff2a87ef4f95bd
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\60CB32BFEE65DA44BC0B5C8743A94CDE8D2A193F
der
MD5: 760f655f32b9a51f373a910ee86ff4d8
SHA256: 8d50307a8e518f1dc5b551d6e62832127a9de83f00ee0a4a7ee5dd6a6d6b3a1d
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F0F631E4F0C3839AA5004CD034156A38BE6481D0
der
MD5: 4391704bff25cb463927e0100d95ad01
SHA256: 0af47059c39f8a05a5963774898e3e5ec66ba2efb61de972bbb59625efd3a8f8
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\aborted-session-ping
text
MD5: 3cb7068afe03e7345cb8bff38c034379
SHA256: d6d623d6abe7cc4c80942424301d7bbb9ab0e15da667bd4529cea39d0364e921
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\aborted-session-ping.tmp
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\session-state.json
text
MD5: aac83d9d07001506a52068fb4dada6f1
SHA256: 1c507a4f04d83e61dbafe10061f703bbba902629b4072633b064fd004798f67a
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\session-state.json.tmp
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\permissions.sqlite-journal
binary
MD5: 4bcebc8a58145db7b184259f3e3f0512
SHA256: 13e2b9c85cfa5b6f3b18e21b3892f2636e73282cb654ba7e6535190544bbf37a
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: 1b63603afdfc3a3733c9cc858ea5cd90
SHA256: 26802945245867b013763b3a4c8a83858ed0c11e657de4a3907f18bdbfc4a1e1
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\45F23097D7267388CE0468BA881B99AACCF2155C
image
MD5: 18991c12b8d2105de759f61f1ff70a18
SHA256: 75c3ee9eb8b177cf29c0f4197bd7bbd790ea6dff0ffc92316408d5721bc0299a
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\crashes\store.json.mozlz4
jsonlz4
MD5: a6338865eb252d0ef8fcf11fa9af3f0d
SHA256: 078648c042b9b08483ce246b7f01371072541a2e90d1beb0c8009a6118cbd965
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\crashes\store.json.mozlz4.tmp
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\33E13CE63D3A83B61D330673581E913A6250A660
binary
MD5: 02471c1b910f05786e97c361097ab54a
SHA256: a7181d9ce1d27efd90216061bc2cbe4982c9c9c7227b5dd8ed3bd24881822770
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 8aab50be97b0d51882103d48d24fae91
SHA256: 056958d47282f5a095d0bd0551f4b62b90d75551e25cc904ee1d87c2f15459fc
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db-journal
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1974643F01FCF7B9A07A24CFA2574DC014239DCF
compressed
MD5: 03c121ea2d6a3d7bf1322f793bf18745
SHA256: c375315de668c621246b11dc108c395d3b6b599f587ba84bf558b3de2d37a00f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6A198A5F71AED3FC52E9DD6CCE1E96330292EB72
compressed
MD5: 3ec32c3a69f88bc4a5e54b364c5f0a2a
SHA256: 2eacdf22965ac541f39e99879cf43a1b347a26a40ee6f7bb36b4957e8b433b34
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\332BFAAEF591D81420C95FA3EF63B68FAD9921E7
compressed
MD5: 2f64e789f18cfe462dd8a2c5b80c4165
SHA256: 525d64ff797e5c975acda30071c4541d826a4dbf959c4f09087293323b765a4e
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: 40eaa74574e710b5add3dc7097ca07e6
SHA256: 92abcfbdfa1250a6cb09bfa4b419b4720ce60dfe4f4d279d7b2901f3d9b680da
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 60a7569d63986b37eb709988cf3932e5
SHA256: 281f736aede943810bc006b1177ffebbc6a36378a3e8dc2253f57d24f9a68ea8
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 6017db14055ab5e52ccc47b69425a212
SHA256: b53a6ad72aaddf3d5e5aa0afdc66cac5d7ab1137081b5ae5179940c71ba64747
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 7896522a97544a09410a64b89f9ad477
SHA256: 9d1c4c477f089976d00ec744b9e585b9f36817a5c028c6d0df8e3a2aaa75d734
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs-1.js
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\33E13CE63D3A83B61D330673581E913A6250A660
binary
MD5: d17ef5eaa27a849071cd0727928fbb63
SHA256: 66d67c36732ef9c2bf73328a0018aae4ead08a806cbd1d503b269cfc0fa75b67
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6A198A5F71AED3FC52E9DD6CCE1E96330292EB72
compressed
MD5: c2b1b85e467734ee252c2fa6a1c0cc88
SHA256: d17713750deec02df992aa5000c161fc1f8f20e92f25492ff9b37c4a32044372
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 28f255434997ae3da22aeba1fac31dba
SHA256: f24b60167d0deee6a8f7b4d4e020c298e40491da09cc0ef6d5b3222310d7083f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\45F23097D7267388CE0468BA881B99AACCF2155C
image
MD5: ddf6d70cd80e6bded97e4e8383f9fcc0
SHA256: 8a221ae38c6a30916c62ac2dbc8a96c4a04a9f25699c65bc42ccbb86098ee93f
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite
sqlite
MD5: 09adf0186fb50ad4ac21193f11310fa9
SHA256: 03188424ba969105167fc4a0ed4793ae9ea3c7be2428edd2ee5819372463e659
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 60a7569d63986b37eb709988cf3932e5
SHA256: 281f736aede943810bc006b1177ffebbc6a36378a3e8dc2253f57d24f9a68ea8
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 6209ee367cf0d1b9574921ce5a54a8e7
SHA256: f150ee3a5641ad614f8405c63fa414a7c455f8f67320bbb5ad9ddb605ec00930
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 23c1c664d6b3a4fd31ae86ed3f19c649
SHA256: 6d99b1b278988f0769192b91556be11b1e017c6c2e18bbd8a916e70d08b7b98d
2232
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_Ex1s2aJrYxPbLaT
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1D015190C6E9AF106093FE0E23CADFE7DCE5C0D6
cer
MD5: b98648cf35734be6ea92d0b177a43605
SHA256: 6296a316cbaab5dfd543b215afc2c78a512c4d38cd5adaaae8ee028103c3b2a9
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 6ff18e88b104e9517184fcec676da076
SHA256: 82064e1421e4d45170f7bc82fb57ff4a0587517ce300d84ca18391b65430a3fb
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D00A688072D5E651DFCBF1F615D0FF8CC68B8989
binary
MD5: 487b9c18d8d7c102575e27e1b5c624fe
SHA256: 01fb4bc742276eb26c95aa12c7ef53bd375adc3c857c074a0c87b30b285500d1
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1EA7BF89DC6525298C79732BA96F91FE6B33F206
cer
MD5: 8a22072c5b313dea296a6abdcb33771f
SHA256: df80814337bac6f56ba8005bd53cc430cceb2f5910fb10ad2d103a6df467114d
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C7BF762EDFF44AD7B5A6EE80EA52F7A62A020A23
binary
MD5: 9c09d970cd41578d83ece001f6907f73
SHA256: 8e9165caf84f89378a689c22f74345d1748f0a91346c4f768988688e4f77be04
2232
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_SKW3V64qhJmXdbf
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\revocations.txt
text
MD5: 7ae76cdeba8d24fb60f2c0ea2ab3daa3
SHA256: b68e311a619088cf2ae3bfc0595bc579f6e339a702d8f958792dfb5485ee4093
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\revocations-1.txt
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_gQbrgZ5lFy01dcp
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F70D8C9D3E7D30072A56F7D30E16FE61B9E6338A
cer
MD5: d4e790e6b29663c3c599adf68c5ec709
SHA256: f01c39c2fc0f828caa4be9c389ee8baccf8e2eb37b84522e2878f937f316a3f3
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B7C00C358947CB0687ECB87477D4E9526C9B4A02
binary
MD5: d9156d2f6761d3fb8a329921c4fa8779
SHA256: 93167223957d3ef672b50ca912fa18ddaec5b266c6c4a95445888de1c8549b5e
2232
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_iSRQ7nZI5xXIbFI
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: 43f5601fba44f03866364935cc62d2e2
SHA256: d611bdd66bcb1590a125ff84302a1c738504338455ca73beaf4d0dae826ab6cf
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 8971a97f138a029c3eec447ec8c433b9
SHA256: 4786c8519224d1e9a0473e53992bc5b07ccfeea65f7c853180c5702c331e8d76
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 2fc15bcf2474c43384e359edcc19c4d0
SHA256: b06933c0a92c5db70b1e32cf9476d933fd0f1c5a572577b3d9e22c1d73a4bb06
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1EA7BF89DC6525298C79732BA96F91FE6B33F206
cer
MD5: c697edada6c85fb2ddf6f4a58b761e30
SHA256: 0183f6b5805ecceee2b790ff15c0345e305a19776d3e2614b82224369df62369
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6F618D9BE823CA6E365C6E938F07FDE5CD12D418
binary
MD5: 0fe7b80d52f7aaadca6ed371bde26dfe
SHA256: ac72bb6059bee80a39770fc02e05efba0388c6da766592b2dfa5c0e9e4cc03a0
2232
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_cBrTnAnyuKjfGxB
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_jLX7YVt6n1drJY9
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 07048a1f76083f2111a194a969f96ff7
SHA256: f6926b662e17358bbb7fbaf13ba47dfe2120ba48b091983f6cf57dd1f325d92c
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1EA7BF89DC6525298C79732BA96F91FE6B33F206
cer
MD5: 16e195d07b4978dfc22234c53ee6fbce
SHA256: 963da5f7559712e7c8e7eba7a09ceaa3ad3748667c26d2480ad1fc284c08abdf
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B386B2083F32B24ADA3AE7E57DBEFEB417F64F22
binary
MD5: 2cd4b5c9f1a6366bad6e9eacc97b4b46
SHA256: a85f26bac7175bf3681931eae0135e404e42a243a512a4301dc1aacb4c26d90f
2232
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_GYYf1crnZJNQ2Mr
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 97da631595cbde11a7c36b043849fa11
SHA256: 43c9e3c2a08f80df28c12d18109b81c7efe5cc3e2b0b3729746a57a6232cdc13
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal
binary
MD5: 7ad167e77525b897af098d71693ac4b2
SHA256: 4f854188699bf630095c4429a52d5faf9d4a919230493e130ed45ebb978901c7
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite
sqlite
MD5: 9ad1ce9870eb29b984098ff07f4c0574
SHA256: 7f8905eeef209ec89258196404158729dc282c40279022555bc9483bb467a50d
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2B8FB3A7C1E8990CE64886D66718692D2B2ED2BC
binary
MD5: 268552f8020c4a8dcf23452a89a098e3
SHA256: 192ca764bf380d0de124af2b6c9ed95939ecd97430a4de1c043a188b9d6aa0ad
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FDFF8BF26A0184A3443B834BCFA5CB7387F1BCFA
binary
MD5: 93bad5e954f5bd1d8146f31d691c6863
SHA256: abcd15a990eb9453cc1d3a284b8142bf64ad7dfa76e105a2fe5ea53eee98e44c
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\06DB95A0DEBDC402E6641014A7D701C2D552619E
binary
MD5: 551cd58d70a19fc29e39c3b34774b112
SHA256: 84c7a9e5459e5e252bb0dead648eb391f6440accc1271c46f7cec841684da054
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CAB7BCE44CF3021A27E6E1FE5B856EAC3C78F593
image
MD5: 150392a63c217a1285b0d989d71ab223
SHA256: 209bb23415d9912a66bfe5fec89aa23eaa3a84e8cabeb4113bd497f700652ad0
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 765d965135115b84e15c52dfcbaaa703
SHA256: 56f0969547a00f7b7f5c86216a0238dbbb0101252cb77bca59d69ab94a7e8eda
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 6209ee367cf0d1b9574921ce5a54a8e7
SHA256: f150ee3a5641ad614f8405c63fa414a7c455f8f67320bbb5ad9ddb605ec00930
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: bfee10de96797b8d00ae2434420c9ff1
SHA256: b80424e585b83d6c5e23fdcc6787273628abf2651f23d118b3bb719ceebf52e3
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite
sqlite
MD5: 8bda47f06983ae1fc12955d4a4fc98dc
SHA256: d740c285a882ca617c336628278712ec779d91cf3cddd0fcad2d2f3de2a1059a
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child.bin
binary
MD5: 340f6c44e24d7c8837c5a0e490127b78
SHA256: f476628d6884cd9a710b6d0edde07975d0cd065f9d9763e3f9aadd34a873b7bc
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child-new.bin
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache.bin
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-new.bin
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache.bin
binary
MD5: af8e54f24de7a686de89e7d4e0e5d932
SHA256: 9bac688527ede14d3a4f1b7f321c01945b00edf69a4e22c8caded331caf2e4c6
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache-new.bin
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: 1d6764246948a9bad512672fc06b0516
SHA256: 0c62cf4432e0e14613585caf2b5350327eac275b0981223ad3d6fd91ba11e626
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6643217481BAC430A0807AB7069E61B07FB5F26A
binary
MD5: c09fbeb7f84961ac742b53068adc73c1
SHA256: 5588f220c4485a2346957b6f535bf2a6898fbfcfc8b294403464912559fe2785
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 6d8c5edd97998f72eef94390fea4ee6f
SHA256: e091d913869f1dfeb8a7cab1d37847b3ac3138cc9a92b2100488400ec91b3740
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-backup
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.sbstore
binary
MD5: ba0009932844173bc8f9af264229df24
SHA256: 66d1c00c04d86e313e9a02775cdf906b1be8d4cd6bef423a1b9e21cc4e9f50c1
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.sbstore
binary
MD5: d886a47c89d9c49c795da345bc236990
SHA256: a03c5e2656d2f292bf5794c8eeb8d223cd6ba4f4bfb2ed1f325460e879d0bcf7
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.sbstore
binary
MD5: c921d8e98fa01b4f303481e112202e92
SHA256: 4ef1038730ec8bc7206713c29a936768831b922c5e6c83355fd62d7401d8c1dc
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.sbstore
binary
MD5: 6f85bc4b2ecb49e26b0bd83a821065d0
SHA256: c0b3bc9b3dc507ab654caf72d13c3aefa58c9b13b1e4d14dd8816712d80a7e54
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.pset
binary
MD5: dded27c5ca7bddeaa6d9c0f7b928553e
SHA256: 1443c8741207243f8d36d6def961ac2cdc086ce299d59910d6c2ae43c66da4ca
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
binary
MD5: 122f7ac0bf75e14fc5024fd6777a3186
SHA256: 028b73d119246c9413f57af4b510045baf89c74117ad4497d40fe9f5606dd46a
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.pset
binary
MD5: 7655fffe7cfbe1ebf96afea5fe2e1376
SHA256: ff2f663c4e453706b7817109f6a43e8b3389e8cfb1b7d64aace2bfba45f3a359
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: 56aa5234cd82cce47242cefda1b2cc15
SHA256: 9281c0abb6eeecb7028d8ef3e4eb5d17428305d8d36ca05255f321d70342011b
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.pset
binary
MD5: 34444bb40bbc91a5680548b7f4e24f82
SHA256: 01535f3f4adad0e02401af03bb09dcff542b314c53721c1f76f746a7576fe7a9
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
binary
MD5: 97d4df5837897756fe256fb602d7ef86
SHA256: de04454f2ff4224c3528928df82a8c18cbd98c76d1c5420693de00ca64f55967
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 3f598fc5abd6bffdee3d54f905181002
SHA256: 740fa97b445c38347ac65320e286d5e85927c0d525682daa71bb19580ccd33ab
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3EF6CF916844079CB709BFA2EBE5B4235C378688
der
MD5: 515e6fdcb7636718b5b2aef4e6da64a6
SHA256: 9e13c3412f6fa25828b3c4df0ee59286568b76da64839c30ee47bbbe6c489b98
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A897F81E6CD3E580CA4641253C674043960EEB34
binary
MD5: 834ba549d1c85ef1eea2b83f48396774
SHA256: 839fad6048acca1dfd9838af8bc1de2e329b74b3d3da757597a7e33c6269c429
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: b76877bd0807fda2a206f1fc5ee58d40
SHA256: 296bb8cbe948774b6773f326bad0f8a7664ae7d8ddce85b5cc5cbb2e35ebd6d8
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.metadata
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.metadata
binary
MD5: 32b92185d93bb1ce696c190f67affb58
SHA256: 64fc1caba60e10f4b72628b9f048a43ce712e692316e9c06e7e12404582db70d
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.pset
binary
MD5: 69ff74028cb6fdcd136be4ce98ca4953
SHA256: 67f46028c79b0b5e8e19e1e9572aac2fbc8b228808611d2a95ee9c20cd860760
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.metadata
binary
MD5: 2d5233105c98d138c9ef504f61905803
SHA256: 254d6298e10ca31ef4613802b83de69d5ccc5580c2c98cc7d1be760f6e03f4e1
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\33E13CE63D3A83B61D330673581E913A6250A660
binary
MD5: 874059fb382ecee258f4443de7da2d53
SHA256: 25f0eeac76587e527d2424a147a456ffdc6365b698ee82a7e42df7e0613f7257
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B0FB993D61AE5D6ADAC3B00AF5911F1B0332DF4A
der
MD5: 14ed2b4cd9609fa8e5de87b4cfdd4d6a
SHA256: c219370d1bc87c0d2e913281db4608fe34f07e2d452734c72466a968d6488414
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6F845F3D128FA241C0646BA9D794E1A8C8D852BD
compressed
MD5: 05697356e88d38d062f3c101e97e6c84
SHA256: 4e1de6f12e243ab6f7b8ab2df023953d21697a601818e7f674347e523576a62d
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3C71259CF823561455C3A8C6942805118D2121AF
der
MD5: 58c47b2ed0f3e1ac8ef252a61bbb36fb
SHA256: 10d35b3cd0a33f484bd0063004c103b9652b2f6ad17418f9b67ccfca6c7c4533
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.sbstore
binary
MD5: a5695cc64d77967232b0c1344c6e72b3
SHA256: 042a22b8681d754671d2018ba109b31a53ee3728d48c6379043f8e3394e7fbad
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.sbstore
binary
MD5: 65e942614eee70680464ac4be75019fc
SHA256: 34395085da32c8b4efe9959e3b0d756b43ffed17694d66f39b966cd331bd9a94
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.sbstore
binary
MD5: 3d1ce5e50208f0cb3b979186043a548f
SHA256: 1e13d05d482c3d533dc6035af2b2d6e84749412a5748d1435b70cec8b312340b
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.sbstore
binary
MD5: 95f28ede25c301301f25fbbd9a3c56ec
SHA256: 87763df78772f7d750b0fa5a31eec23e931fd3bd1cbb33beddfc61889da36478
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.sbstore
binary
MD5: 051fb32dece757ba112ac36dc72e3a91
SHA256: 0806d98fb3de55f75d7c0b17e26146567e08c483031526659a4a35d09b97ef19
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.sbstore
binary
MD5: 3675254e341df799d4307c1f59109185
SHA256: 23d108134bed6099793f7dd6b8b6e62081ec3b945efdbc7c5e0e779fd9b82f98
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.sbstore
binary
MD5: e2cf527ca7550b7e7bdf7311e483a2c3
SHA256: f1e07b1d717433f47073dc54a7d98e3e87b3d0fa88e53466f93ea544af885d11
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\27994
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\22136
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\448B1DECB9C4E2EA8A46ED88766CAB8E2729D28B
compressed
MD5: 1f8e78ba79d5a69c948cd075c74bd719
SHA256: 2455a26b5b23144046eadae105681080d88c8692e430619cfd7074f623172aaf
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\34A0DBCBD387C066F1565838014FCB4A6FDB9AA1
xml
MD5: 1457b0a3895a7c5c2f27d557c44f8ca4
SHA256: 36b882a0b71dacb5a2fdbc84d8f4c061480b0003122b804f64d7ea4565eee94f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9895AFA0BB6BEF075BF23F89A2A18A0B379EB87
binary
MD5: 755c156b721b11e729022a7cb2514586
SHA256: 1e93aca3697382dafd706853307e760215b143fbe38087b1086015c949279fc5
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\25218EE79CFF5F3AC18C58CFDF44A674E3560C47
binary
MD5: 767ec4dc4690cb8a1cf9b7a7b0ca77a7
SHA256: 16997a5c4c7e76e9237ce01a03c7dafb880e49b38fe223f2b3b85c2431fbb3cd
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\740A18710D65DD66EF68C92E0F10EECB0A5B1578
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4CCAE0EFD90033B6970ACFD86B5D8C4FE643B0CE
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8037C81A70E1A5274A20998B824B261B867CC56F
xml
MD5: 7bab73136b9168a276204307603fde51
SHA256: d3b961adf5bd38ff26f5f1f1ad8bbac7735d8758e34145637aa00a73b180b243
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\03BB0A92F40A88C50D3E7922888E02030CCB09DA
compressed
MD5: 75871f11805f20b4cf04880ea2368d87
SHA256: b5191040135b1d89b662b782f1b092ea70538d28e9619d4aadb2a1b6bd922b15
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 5364b616c78dad43dfd87e62f40dd1e7
SHA256: 2673634c1823eff11951ad7f535d707a71b60455f55608a19b77ac80564d2de9
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\13F7CEB66102DBF96DEEE105DD7B71C77B088BB4
der
MD5: 49e138b2e5f2a8086203b6b69d160523
SHA256: 40e5ec1546666ac7cac8b4e2ce9f5813caa16482f3b584bf1857d09702a19668
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F07991FA0FEBB81B9044A70C4DDFF5C44ED8257B
compressed
MD5: 793ba4707ca4826d7e413f5329ed46b9
SHA256: 6f14eec0c75aa2ea50f569c2b677deb90d705659459c30c1dd1308eb18abb90f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B1B8B6711EEE323A20AB0068B92A8F387C9BD8CB
der
MD5: 70c5179e2f0ca63d0f5f2dccb7e4a2bd
SHA256: 47bf3ad84a606ad5bf5fb27293dac1c73df759419a2265de895e8a6f60afab1d
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\46CA7D729F75B078AC12FE01673F9CC21C99C0E0
compressed
MD5: 7cce3c204d4ac25ae02d3f08b1780cd2
SHA256: 571708b86cb2ba27cdf1d193657c01259647d948d910bc706121916c405bfff9
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\89A4AD9174AA920D51C662C58F58C88A43D55334
der
MD5: 3e3c2d74577ed6b84e08dd31e927bc93
SHA256: bc1993b2c66d7464e5a6c11f7a362a866efd05abc7299f4bfbcb90a3f19b7a98
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\21135126B405608D6AD0CB9A858F1A1B11DB7C7D
der
MD5: da9ef71b07635d0b53ba2e7b9090808f
SHA256: d98624518df1bf55f8a418d3f1ecfc6e89b282a31d2b76cc1e49bc0f19379a1f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EE59C7919BF1DEF6DF77C3F5D446FDCA59668C15
der
MD5: c0bdf8b508382d8688b4d193214c741c
SHA256: 1645d7938596131eea0231402b847d8412c1cfdeeced255167e1ddd03c4b3236
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\321244B6B149602DAD272140D377F3A3FA9F547D
ini
MD5: e653349fc8ad70b78b2f8481961316cd
SHA256: 44a05b67496eace0e6ca1b32652e259c785169e6446d7fe09a87532832dbdef3
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A956590C758B1488E475DE0576865701E9B11CB1
der
MD5: 20392c231d30888ff0d8c88fbc98a0ca
SHA256: a2f72aec7868d20fe6ccacffdd7ddab3aa33adc31421c56e21513554186ada98
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B667A107DA959684DD06C13583EEB0808B4D7179
der
MD5: 8af8341e7b09b33f5e51f403595b5f03
SHA256: 514ea9a5b0525b6b9c26eac74b49914e7c401099584cd0bb636d157a13b86f82
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5E4954707B44E5A4B4ACF5F22B52219A1DCA477F
compressed
MD5: ea3ac9c45b766c963b26ca382ece9846
SHA256: 51b8087c02137f71e1d38a874da3c19eb043514d989055e88e8160ea8a511e19
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CC7D5F1C37243DF1055DBD1E02118BDAD372B9FC
compressed
MD5: fd419383822102519fe2c9132474e99b
SHA256: 524597b5500c003418045339525d4c2cf2e7321935ffdb9b30c5d79a8b289a9f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\58EF5A5873BD42353D36A0864229679E3F1A1E8E
binary
MD5: cdf0dfbce7cc5fe19808591aade3d33b
SHA256: 287f1cb33c3483e67e93a3b820db2d1565029017ff959a2f82da55cd0f9a4b5a
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\09F12EAA8F2BD51CA52DB310DE832E819F59097D
der
MD5: 81378a8bec78bd938f8c49951d4a2eea
SHA256: ee19040d0b2170d7ebcd7969c3560b7499974be6a1e76f41ee0a80bb6958a7e7
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C8217B70665E30B00305D45FC816AD457269AFDB
der
MD5: abbe455573d1ca5b774acd24e5c44158
SHA256: b8f847d336a91b68c986075e0110a6da0867ca3380f04964486ba3064cf505dd
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CA8AD8EE2D5058B9742AF795732AD6B33AB9CF7A
der
MD5: 07941ab095cd42117113eee647559626
SHA256: 62e8f74b04ac9a2c14c26f8008abd8e25c242b5c0d88d9b1ad78972d10053232
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9EE130990F2459A12210CB312F1D1D8639699793
compressed
MD5: 675028fff4dfed0967f25b02620fe304
SHA256: 8c27b2d5142be7ac2156142a75f22c0346fe547555938eb733b93afe678cf568
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7D54B4319627070A65A888A0AFD5FDFCFE965603
binary
MD5: ffb5bc64f29a6e8fe252551951ed15d6
SHA256: 92304ba579686d791bca1d3f45831ef5515f1df530ffbd5adb89399789a8e1dd
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F5205F5B5AA3D5324832E2617B2FD2E96A626951
binary
MD5: e822553e3d5eb6333dcd7319f290e7df
SHA256: 74062255b377433adab4d92e915aaffba0d48f58783c6bcb29265a8df4b6910c
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 084bfeef772b49a1fd3878e836330b83
SHA256: fcddafbb6e5d3ce91d9e30d23904f24708979287a8e26ae79deed165fe61de26
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DC9B706A4FB353BDC86CF3EFC0491A4A2243A547
compressed
MD5: de4800b87a13bc9d34adbd32192f13f4
SHA256: a93e7cfc9bfc235e5b3947369f2b997503c25cd950638bf962eb321f4ec0fbb9
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4DE43D5B0ADFB2C7C4CA6D552E1D7A5284CFA1AC
compressed
MD5: 2d919f2163be77ce8308613bf3ab15f2
SHA256: 8e22cada5b4e048d45e4b630e1b10982effee90363f752fdf6c44b38ba009b18
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A622F42A3D9F9AFF1955F1699893FE1DFFBBF0D2
compressed
MD5: 07f8c67c94c8ce1fa20ea6a087843a1b
SHA256: c79d17cd254e079d9ba4033d1284b495f9b190875516c5914a21cdae962af002
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5E7135A140FD1ECFE23893587C1B4EE0D1ABD0EC
compressed
MD5: ea460e4510e3685ef43c4e00d531ce89
SHA256: aac798c0963105192c6dbe2cdac2049691671c9be18ffb0870b96176332365b0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\93703C27354BF24229D72112BD8A11F68397AEB6
image
MD5: f2beafe6b22fe77dfc7ddde9451435df
SHA256: b2014f722f3ba25251947bb97a299320fb493386630ab2dd72e84edec84ad632
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EA265CE4CDD7E8E2EAF78E5C8F814D3658AE36F5
image
MD5: 4d7de54471d25307683468c31b5ee47d
SHA256: 1b4de17420c166ecf4af0a851635d1e3c1182a8e75853cf457b6408ae2e8bf0a
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0C710F118DCD3C0F89BF73C2965C3F968115054E
compressed
MD5: 0885404a69f750f608fa4a230fa20172
SHA256: 55be9d5d4cb819f5038d62f11acd00aca764f0e702898811d570e8469c389bd1
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B43B77A9C9DE4D0696DBD03F640F8CB63B3AA32D
image
MD5: 528011579040907115c095093456ad5e
SHA256: e867072515d8978e1dd098be4a20997a7a3675b02ce7ff07b50722d7c54e2193
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7928049E15D6DCA8107656DC20073A31FF8AFA51
compressed
MD5: 2751f0b493c5fc1c82fa887cbb656ee6
SHA256: 9c2fe4eb2becf6f24fc9ca3d203f37ab82313aae6216e582ee8f546dc53bb091
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\17C68B0ACD1B95C298E29A451B09EC9A4E3B6A03
compressed
MD5: 07294668a2f671dac50d5805ed1a777e
SHA256: 1e346d08f601b26f55330b20409035864a0557e7872a532f9d0d3404eaae9cea
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\004649F3B564DCFEC9DFFD891F5C39BDB890699D
compressed
MD5: a1de89027bb12d900034ad3c0f3e4dcc
SHA256: ab3a811aa4508ed1d0a25c75efc728a99ae59011115ced51fe7ba02bfdab60a1
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8BBAE76247D1D91454F8434B840C77AFD29EEFC1
compressed
MD5: ef265fa1edf83b5056e5aa964506ab97
SHA256: cacb4c54e5399428f3649c56dfa2fa91ad58bad8c9d3256ddc383a06b82e370d
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AA5A7D846773FA8701CFBD833FAA4BDF2235840A
image
MD5: b29a03c9f61c6e550076103ce111c3c2
SHA256: 9f9dbed186ecd5f5d4f032ec75980581bb27e25645bb344d85c0798ffc9ba8bc
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\497701AA7280BF34F12AE648734357D2364D9711
compressed
MD5: 5db40eec2991deec3b23c2c09e8fb389
SHA256: 5c962db90034b3c8ecff630d50d25d3c470c1e6c425a7eb46441f215c181b5bc
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AC0806BF46620EFB6EE9EEC1C71D0D88D7D623AC
compressed
MD5: 9a5090ee564d9aba6071c1b2e8a3ccbd
SHA256: b5d84dd0590b0c6410df5473cb084afb0bc8f1b805eb193f17c5f8fb6bd05e89
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3281F5603857699688B3D8060774D0A788E541C6
compressed
MD5: 467589801672e689428242c898392c66
SHA256: 62318bf3919935ea9325f39de48ad3ea21f40d99d5a7fde757b9543ce5dc3ffa
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F79D7F200E182F1CC831E66462439EA05A885AA6
compressed
MD5: 15f2947a7b569650b6a10d5ed87e97e0
SHA256: 417921b75b15791673eb851c6b86cffb090abb9a070c7665ceaea02912b57f79
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3A5E44008539DD0BFD421565C839B7D3A5E1B6BD
compressed
MD5: 3557119967d13e95de19755fe99ba5d5
SHA256: c58356b919ad5c876b6306bdb780d03676280320298522685cb6fc4dd8f1e2f8
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\33709D7F93E3B7E78E318E08CF0550B9D8F5C644
image
MD5: 1878747184f655125fc71bf7f77b9a59
SHA256: 6ab77a37f39aa644be79b78689a226661f62fbb7135917cfdb930b4e53772dd5
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\66ACD3342F198EA6CD69C76224E3337DF540D68A
compressed
MD5: b6cfc732d25d47021a364efbfb43f1e9
SHA256: f629cf296dabc275d519fdf7ddbdf499c1e5bffd964bf610bb45a249a554883a
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\78503012BC4166574C4FF2D8520410B502723CA4
compressed
MD5: 06f43c38b078ddc42a9641614c4975ff
SHA256: f9a59046e992e6a6c7c8d12688de2e18327b07ed51e9a1962f9723def64a722e
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BD71865247F2E703CE48FE955B9EEB142314DDC2
compressed
MD5: a9c029d08b686664bbd095846ccb88d8
SHA256: de67a00bd3480a5fe74c93ba28b0204d0061f53f5b7dbd218450505fe0199c47
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CFB75DC60F245F5BD3EF9E8670C43491C6227217
compressed
MD5: 29309b30f1866f1eb8f32706afd3e4aa
SHA256: 03f65ac40ff60ce359c9ae9208958f40c99600f30825b84f588da98288c6f0d2
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B4D0ECE304D0C13FF59F0B6BF009D4C9715CF5AF
compressed
MD5: 3851e3f596e295349143f6b039c5fabb
SHA256: f445c9015c346df1f5c27eec7df6e576592b07505782952653890cad95c62ebf
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3148C2D22D054D8B6A524A6EB13449E37D55BD78
compressed
MD5: 93352184c512d498300efc7ac828f09b
SHA256: d56d543d644fda17e632256dbf6f6e921e6789f48115c240ffcc32ad2fa7c054
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F447349FA9D4AE4A1D54D57794BE5ACDFE3B65A0
compressed
MD5: 356ab799c0bc3d932a51949d70633902
SHA256: 769c6dbcbb7471adcbd4c4f1f84f97922f7616944f05121f768e5e1b411b8509
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\582786404E9F4FE546CC34D9942AF0F535CE8BFD
compressed
MD5: 50a7bec94cbc3c06076cd524ef04ea9b
SHA256: 79dbd6dec9323d846bde1e1c7f0075a2449ab0487154d53a5985e08d4dc9fae5
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6F6C30DE4B9D3B3F293D1AFA3151829E6794923B
compressed
MD5: 58b0ed7a40e8476c9ce1f5135acc15f6
SHA256: 2d8d74e10b5ac161f6b36ceee20c0d8d87abda8e5c3f6d0b08bc4410d978749f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4E921DF96519917C6824AA13F7344E3DE5A871F2
compressed
MD5: 036ddc91fe91e03ef9a5e2ce79413c0c
SHA256: 33a958d88f87b4412cdb9e08f91fe5e15a067914b32c39fd49daffbf2e4d3161
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\46CA7D729F75B078AC12FE01673F9CC21C99C0E0
compressed
MD5: 3a7e2a29ff46eee96bcd3675e6e90e9f
SHA256: aef6be0e08608725a272991de0f3d915b3fed9ffb2c9840adbdc0d824a74d02a
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2CBDA300A1A29D1807FCC48D6A007E88835CE47C
compressed
MD5: 28b884912388dc6322917a8ca7006f8f
SHA256: 720156fb982d64b68798f9b27835c7040b3ff0bd84c3986adad864502b82b91d
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7DFCE0B1A891F977DDE3E72DA07786AB04960EEA
compressed
MD5: 782bac89bbc89eb2508c92c3737b6d24
SHA256: be8635a4fee9e9b3183124c0c791bde9147f10de9cc87f920a096c55f6d8e49b
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4772819FAEAE19965430F42D0F1231CE69BC500D
compressed
MD5: e885c59f0bbc4f8a458324e5276c4409
SHA256: 18417db73fbc24fde915739727589415310b89b449565a706ca8eb04a2ca175b
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\524FE45D608D35CC49BFB9B190DD9EBF5E3CC1B2
compressed
MD5: d98fd2ec23763eb07835f3d9670f86e2
SHA256: 8a4030c911301a561dd6dd9abf8d79231ea88d72c4762ee10ce9769f6b5a9b39
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2C379F374F348E2FC97338D0247CDB2E7655AEAA
compressed
MD5: 8be3c81fa881c70e68730947a28eef3e
SHA256: c82d5577e1f0bb06437d718e3ae199eb371adb244a351918f9c7c9f7c9c217bc
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DF40EFC3AA50764E3180AC6976CFFAB6C593F7C3
compressed
MD5: cad1e63785f0097e04a09ac250038278
SHA256: 63ea0d5c5118b83849c3e04e56fc1bb4c0818cfccec302b5c7c8f02f5a0b9f17
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E13065BFF8A139A3598449A2701CE228CAB4D356
compressed
MD5: 23d2713b987365e9d686b822bd60bc38
SHA256: 9f00e0c2a748c81b5e4857c133e7947760b33ae102da3138b45872534462c88b
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\75E7BED20E308784CF92782DCDFC7F8FD91723FB
compressed
MD5: 5a4d82c7400d9cd1e08a45c0b9080ead
SHA256: 1ec226b36ee7ca93c995688a5802ccd60c251e01e2625b3ac4aeec906c426f47
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\65613608B39D85685B1EFE7179C35EE448D9023A
compressed
MD5: 6f73d6b7ff81419a436a7e44a91cc67a
SHA256: c76a657e079ec0b7f361e552b0bda9679050306e7497679df863ef51e7690312
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6F845F3D128FA241C0646BA9D794E1A8C8D852BD
compressed
MD5: b7a47c3c9190858ce0f8926e2b137712
SHA256: 49bbef822ee9cff8de48b7357e0f340cc166f0d355dbf42740c16bf3d73c8609
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C06C8DE92F50DBDA9D0902392BEE6E445EC0CEF5
compressed
MD5: 17c09726969fa662ec26434bc127036b
SHA256: 6f29741eebf7c5e1943eac5fa2d436a42f539d5625d203c39505df9f7becc0e0
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A11A7F2F6B093BD2653E4E712589CC42C3604F7D
compressed
MD5: d906ced3fbe9d1a688ace4b4cac23932
SHA256: b95b73b0eddb34f5d3731c1ae33b1c6c9cc9811337e84b5d82549baeca7daccc
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\095323765F97584F13384E78E823FB796C916121
compressed
MD5: 162679978132d12e2f79ab9aad0b9fc4
SHA256: 75f19025adaad238b6afa0c2a13124570f2d56f9bf360cc57b9465bc78a91e3f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9AFB8D50BB713B7401301CEE559A616AD732F907
compressed
MD5: 50c8b3a9d8f185c7d9cc6856c23f194e
SHA256: 7e2aebb73b5cc9e38916803f9d5f7ff9811b94b1d17bd55273fc29fef592e058
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\59A8AAABED9F83BAB75A722563E8F742599F485F
binary
MD5: 325e9b40451813061dd8b03701efb042
SHA256: 9d646da210f0aefbcee970a5cfc070201f78327773162097e8504293ff5839fd
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 765d965135115b84e15c52dfcbaaa703
SHA256: 56f0969547a00f7b7f5c86216a0238dbbb0101252cb77bca59d69ab94a7e8eda
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\addonStartup.json.lz4
jsonlz4
MD5: 7337d087ec76e87a76778b4eec5e8e63
SHA256: aa4398d1716aadeb35a4ddddc4e7d2429c71defd15cb45401938889f5b2f05e0
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\addonStartup.json.lz4.tmp
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\ED97954DA885D55F1CE903BC1B4C338259964438
der
MD5: 95946f37f468a19a1148412d5da88ba9
SHA256: ecf82c8da65face5f53cc1c337f4dc032660626e27b87ff2d22f8a3fd898bc4f
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BB76DA66B9CF0DCDC8AE7B5A7631936728BFA8A8
der
MD5: 32f81c9597e8a43398cdcbc9e93db4f7
SHA256: 0b44c1fc3f911c0587df26eec7cba3f63aae2bfcde4ccedbb1f488b898d01c6c
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\search.json.mozlz4
jsonlz4
MD5: 7530192773ee07fdf4ba38df541f5715
SHA256: e8218d41c36503ae8775e7fba776647fe972f425a1401e627186b6e238de775e
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\search.json.mozlz4.tmp
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0C98B662B7C6FCE76E4F9B47FD92360BDE57330D
der
MD5: d89e15b757ca424976daa3efa1704fff
SHA256: 8bd23ac33ed1ff62f2601c5fb917777c26a5e367cd1a6b123104ead0850213bf
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D03379A67AFEC2AA44F1C28FC00CE0F8923D3DF6
binary
MD5: 6bb9c80e06a4752e73d3b4cfa1abdc63
SHA256: 054f421577b253991098bebe3143b0aca0924211e109e190a4a316accd26c6a3
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: e14b5f5734a6e505fa149f7b4ebaa62e
SHA256: 746b4051780243164e9a88f0066618b2c9c6580d56ca4c97b6ab6527092e5de9
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4142D754B4A502E13B46B7706EE4872EF42FC5C2
binary
MD5: d053f261df2557399f6edf168986e8de
SHA256: b16829f565db7b8ce2e1164126efa534a740c9ae5b8b68684fa990ac8d6259f8
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3428896C8A9132471F5989C455A8C13637750A24
image
MD5: 5157574f46281430bb61cbfc4dca3fe4
SHA256: 72ddacfae67fc62840db977b96f2554d52569f7d13f93d6c1d0d053a8b73e4fc
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\16A24D9DBE3BFAA442136FA22052DCA7EB422A55
ini
MD5: 2bf7593a875b9f440189e8d58825b95c
SHA256: 27114afce2185efebacc9eab28cf0e6bc8aff96d5c10fee74f065ddb31ca47ee
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\49968F5AAF6C3D4E162E052C301E673D6E1D2552
binary
MD5: 8a3158634c8631c8a3ddc78e8e5f6bd6
SHA256: 960294dbe59ea27430fac3d41cc16838b140db97a7b76f99a4965456e1e2fa2e
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\7868
binary
MD5: 00845cfa655570ede0374d9c0df85b59
SHA256: a421e6f7103b60091014b90f4118ae00b723d80599d4356e3e150b8f2be2359d
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\349FA27D206BDC20F895FF8EA8708CB4FE0C1B98
der
MD5: 5bce66f1f9a9940d4a08aa2d32803b17
SHA256: 8ce4bb9d07264722b2826e61688cefb6d1cd1fe3eb0c4013a03c4332ed08ddd8
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\09AFC135E35BFD5E2189BA3D8E8BAE64AF8D6522
der
MD5: e9ffb7472262a45846aedf1f4ace96ba
SHA256: cc03a73ce1b2464685ae48187f439c714410d95df0e717c930893933594c68a4
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.pset
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.sbstore
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: d37765d4c740e901eaaabd4d31f66a67
SHA256: 6c29b0d3085575909db1468ad5de1f95f4b7fde456a6b721181950771d35e2b5
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json
text
MD5: c4ab2ee59ca41b6d6a6ea911f35bdc00
SHA256: 00ad9799527c3fd21f3a85012565eae817490f3e0d417413bf9567bb5909f6a2
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json.tmp
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json
text
MD5: ea8b62857dfdbd3d0be7d7e4a954ec9a
SHA256: 792955295ae9c382986222c6731c5870bd0e921e7f7e34cc4615f5cd67f225da
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 8f89a5889e1615f65674daf6a01a2454
SHA256: f6d3fde91836d607a3311a6e0a12463c811f791a9f231d2ff8542d772fa22ed7
2232
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cookies.sqlite-shm
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\trash257
––
MD5:  ––
SHA256:  ––
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child-current.bin
gmc
MD5: eea17f67fd57174d29c5ede8dc944b42
SHA256: 807ad7cf5a6bb45426ca2ed79856ad4a141a11acbdde540fd4c10c8bbf01a687
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache-current.bin
gmc
MD5: 50c27fc71b8eb413f290e0a0e0a0f30e
SHA256: cac301e92bd8b54a2baf8dec1aa1f58707f5ad9fa4958b64eedd900dd667fe45
2232
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-current.bin
––
MD5:  ––
SHA256:  ––

Find more information of the staic content and download it at the full report

Network activity

HTTP(S) requests
23
TCP/UDP connections
59
DNS requests
153
Threats
0

HTTP requests

PID Process Method HTTP Code IP URL CN Type Size Reputation
2232 firefox.exe GET 200 88.221.144.128:80 http://detectportal.firefox.com/success.txt IT
text
whitelisted
2232 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2232 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2232 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2232 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2232 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2232 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2232 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2232 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2232 firefox.exe POST 200 52.222.149.17:80 http://ocsp.sca1b.amazontrust.com/ US
binary
der
whitelisted
2232 firefox.exe POST 200 52.222.149.17:80 http://ocsp.sca1b.amazontrust.com/ US
binary
der
whitelisted
2232 firefox.exe POST 200 93.184.220.29:80 http://status.rapidssl.com/ US
binary
der
whitelisted
2232 firefox.exe POST 200 93.184.220.29:80 http://status.rapidssl.com/ US
binary
der
whitelisted
2232 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2232 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2232 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2232 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2232 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2232 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2232 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2232 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2232 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2232 firefox.exe GET 200 88.221.144.128:80 http://detectportal.firefox.com/success.txt IT
text
whitelisted

Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID Process IP ASN CN Reputation
2232 firefox.exe 88.221.144.128:80 Akamai International B.V. IT unknown
2232 firefox.exe 34.218.159.169:443 Amazon.com, Inc. US unknown
2232 firefox.exe 52.11.30.237:443 Amazon.com, Inc. US unknown
2232 firefox.exe 93.184.220.29:80 MCI Communications Services, Inc. d/b/a Verizon Business US whitelisted
2232 firefox.exe 52.35.96.157:443 Amazon.com, Inc. US unknown
2232 firefox.exe 52.222.158.53:443 Amazon.com, Inc. US unknown
2232 firefox.exe 172.217.21.202:443 Google Inc. US whitelisted
2232 firefox.exe 216.58.205.227:80 Google Inc. US whitelisted
2232 firefox.exe 172.217.16.148:443 Google Inc. US unknown
2232 firefox.exe 2.16.186.34:443 Akamai International B.V. –– whitelisted
2232 firefox.exe 52.203.104.230:443 Amazon.com, Inc. US unknown
2232 firefox.exe 172.217.18.110:443 Google Inc. US whitelisted
2232 firefox.exe 209.167.231.17:443 Oracle Corporation US unknown
2232 firefox.exe 184.31.90.134:443 Akamai International B.V. NL unknown
2232 firefox.exe 172.217.22.72:443 Google Inc. US whitelisted
2232 firefox.exe 52.218.218.203:443 Amazon.com, Inc. US unknown
2232 firefox.exe 104.19.147.8:443 Cloudflare Inc US unknown
2232 firefox.exe 130.211.34.183:443 Google Inc. US whitelisted
2232 firefox.exe 52.222.149.17:80 Amazon.com, Inc. US whitelisted
2232 firefox.exe 74.125.71.155:443 Google Inc. US whitelisted
2232 firefox.exe 172.217.18.4:443 Google Inc. US whitelisted
2232 firefox.exe 172.217.22.3:443 Google Inc. US whitelisted
2232 firefox.exe 52.88.72.192:443 Amazon.com, Inc. US unknown
2232 firefox.exe 151.101.2.110:443 Fastly US unknown
2232 firefox.exe 52.222.157.83:443 Amazon.com, Inc. US unknown
2232 firefox.exe 52.222.157.19:443 Amazon.com, Inc. US unknown
2232 firefox.exe 52.222.157.111:443 Amazon.com, Inc. US unknown
2232 firefox.exe 54.148.84.95:443 Amazon.com, Inc. US unknown
2232 firefox.exe 103.114.160.253:443 –– suspicious
2232 firefox.exe 52.41.57.47:443 Amazon.com, Inc. US unknown

DNS requests

Domain IP Reputation
detectportal.firefox.com 88.221.144.128
88.221.144.105
whitelisted
aus5.mozilla.org 34.218.159.169
52.35.34.27
52.34.120.127
35.165.116.96
52.34.127.169
35.161.58.143
52.43.79.30
54.213.5.202
whitelisted
balrog-aus5.r53-2.services.mozilla.com 54.213.5.202
52.43.79.30
35.161.58.143
52.34.127.169
35.165.116.96
52.34.120.127
52.35.34.27
34.218.159.169
whitelisted
a1089.dscd.akamai.net 88.221.144.105
88.221.144.128
whitelisted
search.services.mozilla.com 52.11.30.237
54.190.222.97
34.215.70.240
whitelisted
search.r53-2.services.mozilla.com 34.215.70.240
54.190.222.97
52.11.30.237
whitelisted
ocsp.digicert.com 93.184.220.29
whitelisted
cs9.wac.phicdn.net No response whitelisted
tiles.services.mozilla.com 52.35.96.157
54.186.163.246
52.42.232.148
34.208.138.0
52.34.132.219
52.43.91.152
54.149.115.79
52.27.87.181
whitelisted
tiles.r53-2.services.mozilla.com No response whitelisted
snippets.cdn.mozilla.net 52.222.158.53
whitelisted
drcwo519tnci7.cloudfront.net 52.222.158.53
whitelisted
safebrowsing.googleapis.com 172.217.21.202
whitelisted
ocsp.pki.goog 216.58.205.227
whitelisted
pki-goog.l.google.com 216.58.205.227
whitelisted
zlp3hehlmh-dot-ypv94-5ypd-4rw2a-7spx.appspot.com 172.217.16.148
unknown
docusign-support.inbenta.com 52.203.104.230
18.210.61.37
34.201.225.138
unknown
docucdn-a.akamaihd.net 2.16.186.34
2.16.186.11
whitelisted
a1737.b.akamai.net 2.16.186.11
2.16.186.34
whitelisted
u03.inbenta.io 34.201.225.138
18.210.61.37
52.203.104.230
unknown
www.google-analytics.com 172.217.18.110
whitelisted
www-google-analytics.l.google.com 172.217.18.110
whitelisted
s566810826.t.eloqua.com 209.167.231.17
unknown
img.en25.com 184.31.90.134
whitelisted
p01.t.eloqua.com 209.167.231.17
unknown
www.googletagmanager.com 172.217.22.72
whitelisted
e5763.g.akamaiedge.net 184.31.90.134
whitelisted
www-googletagmanager.l.google.com 172.217.22.72
whitelisted
gtrk.s3.amazonaws.com 52.218.218.203
shared
script.crazyegg.com 104.19.147.8
104.19.148.8
whitelisted
s3-us-west-2-w.amazonaws.com 52.218.218.203
unknown
script.crazyegg.com.cdn.cloudflare.net 104.19.148.8
104.19.147.8
whitelisted
api.mixpanel.com 130.211.34.183
107.178.240.159
35.190.25.25
35.186.241.51
whitelisted
ocsp.sca1b.amazontrust.com 52.222.149.17
52.222.149.72
52.222.149.152
52.222.149.209
whitelisted
status.rapidssl.com 93.184.220.29
whitelisted
stats.g.doubleclick.net 74.125.71.155
74.125.71.157
74.125.71.156
74.125.71.154
whitelisted
stats.l.doubleclick.net 74.125.71.154
74.125.71.156
74.125.71.157
74.125.71.155
whitelisted
www.google.com 172.217.18.4
whitelisted
www.google.nl 172.217.22.3
whitelisted
shavar.services.mozilla.com 52.88.72.192
54.186.120.41
52.32.141.83
34.212.119.231
54.201.35.95
54.187.176.55
whitelisted
shavar.prod.mozaws.net 54.187.176.55
54.201.35.95
34.212.119.231
52.32.141.83
54.186.120.41
52.88.72.192
whitelisted
fast.wistia.com 151.101.2.110
151.101.66.110
151.101.130.110
151.101.194.110
malicious
dualstack.f4.shared.global.fastly.net 151.101.194.110
151.101.130.110
151.101.66.110
151.101.2.110
unknown
www.youtube.com 172.217.21.238
172.217.22.14
172.217.18.174
172.217.23.142
216.58.206.14
216.58.207.46
216.58.207.78
172.217.16.174
172.217.16.142
172.217.22.110
216.58.210.14
172.217.16.206
whitelisted
www.amazon.de 54.230.92.9
whitelisted
star-mini.c10r.facebook.com No response whitelisted
www.facebook.com 185.60.216.35
whitelisted
youtube-ui.l.google.com 172.217.16.206
216.58.210.14
172.217.22.110
172.217.16.142
172.217.16.174
216.58.207.78
216.58.207.46
216.58.206.14
172.217.23.142
172.217.18.174
172.217.22.14
172.217.21.238
whitelisted
djvbdz1obemzo.cloudfront.net 54.230.92.9
whitelisted
www.reddit.com 151.101.1.140
151.101.65.140
151.101.129.140
151.101.193.140
whitelisted
e11847.g.akamaiedge.net 23.210.254.92
whitelisted
www.wikipedia.org 91.198.174.192
whitelisted
www.ebay.de 23.210.254.92
whitelisted
dyna.wikimedia.org No response suspicious
www.mozilla.org 104.16.41.2
104.16.40.2
whitelisted
reddit.map.fastly.net 151.101.193.140
151.101.129.140
151.101.65.140
151.101.1.140
whitelisted
www.mozilla.org.cdn.cloudflare.net No response whitelisted
d1zkz3k4cclnv6.cloudfront.net 52.222.157.63
52.222.157.114
52.222.157.31
52.222.157.83
whitelisted
tracking-protection.cdn.mozilla.net 52.222.157.83
52.222.157.31
52.222.157.114
52.222.157.63
whitelisted
en-us.phish-error.mozilla.com 63.245.208.212
unknown
www.antiphishing.org 52.41.3.203
whitelisted
safebrowsing.google.com 216.58.207.78
whitelisted
sb.l.google.com No response whitelisted
support.mozilla.org 54.187.203.106
34.208.233.116
whitelisted
developers.google.com 172.217.22.110
whitelisted
redirects.public.mdc1.mozilla.com 63.245.208.212
unknown
www3.l.google.com 172.217.22.110
whitelisted
prod-tp.sumo.mozit.cloud No response unknown
firefox.settings.services.mozilla.com 52.222.157.19
52.222.157.14
52.222.157.54
52.222.157.79
whitelisted
d2k03kvdk5cku0.cloudfront.net 52.222.157.79
52.222.157.54
52.222.157.14
52.222.157.19
whitelisted
content-signature.cdn.mozilla.net 52.222.157.111
52.222.157.96
52.222.157.38
52.222.157.30
whitelisted
d12uj65dsn9ho1.cloudfront.net No response whitelisted
www.sitepoint.com 54.148.84.95
whitelisted
luiszanda.xyz 103.114.160.253
unknown
incoming.telemetry.mozilla.org 52.41.57.47
35.160.159.212
52.89.38.17
54.70.141.88
52.89.110.41
34.214.74.24
35.161.6.28
52.89.160.172
whitelisted
pipeline-edge-prod-25-561439127.us-west-2.elb.amazonaws.com 52.89.160.172
35.161.6.28
34.214.74.24
52.89.110.41
54.70.141.88
52.89.38.17
35.160.159.212
52.41.57.47
shared

Threats

No threats detected.

Debug output strings

No debug info.