General Info

URL

http://alphacentauri.com.br/Producao/hhh9q-esy6y-yfovq.view/

Full analysis
https://app.any.run/tasks/83946d6f-e23b-4ffd-9e20-74431e94bc05
Verdict
Malicious activity
Analysis date
3/14/2019, 15:46:26
OS:
Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distored by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.

Software environment set and analysis options

Launch configuration

Task duration
60 seconds
Additional time used
none
Fakenet option
off
Heavy Evaision option
off
MITM proxy
off
Route via Tor
off
Network geolocation
off
Privacy
Public submission
Autoconfirmation of UAC
on

Software preset

  • Internet Explorer 8.0.7601.17514
  • Adobe Acrobat Reader DC MUI (15.023.20070)
  • Adobe Flash Player 26 ActiveX (26.0.0.131)
  • Adobe Flash Player 26 NPAPI (26.0.0.131)
  • Adobe Flash Player 26 PPAPI (26.0.0.131)
  • Adobe Refresh Manager (1.8.0)
  • CCleaner (5.35)
  • FileZilla Client 3.36.0 (3.36.0)
  • Google Chrome (68.0.3440.106)
  • Google Update Helper (1.3.33.17)
  • Java 8 Update 92 (8.0.920.14)
  • Java Auto Updater (2.8.92.14)
  • Microsoft .NET Framework 4.6.1 (4.6.01055)
  • Microsoft Office Access MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Access Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Excel MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office OneNote MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Outlook MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office PowerPoint MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Professional 2010 (14.0.6029.1000)
  • Microsoft Office Proof (English) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (French) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (Spanish) 2010 (14.0.6029.1000)
  • Microsoft Office Proofing (English) 2010 (14.0.6029.1000)
  • Microsoft Office Publisher MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Shared MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Shared Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Single Image 2010 (14.0.6029.1000)
  • Microsoft Office Word MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (9.0.30729.6161)
  • Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (10.0.40219)
  • Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (12.0.30501.0)
  • Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (14.15.26706.0)
  • Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706 (14.15.26706)
  • Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706 (14.15.26706)
  • Mozilla Firefox 61.0.2 (x86 en-US) (61.0.2)
  • Notepad++ (32-bit x86) (7.5.1)
  • Opera 12.15 (12.15.1748)
  • Skype version 8.29 (8.29)
  • VLC media player (2.2.6)
  • WinRAR 5.60 (32-bit) (5.60.0)

Hotfixes

  • Client LanguagePack Package
  • Client Refresh LanguagePack Package
  • CodecPack Basic Package
  • Foundation Package
  • IE Troubleshooters Package
  • InternetExplorer Optional Package
  • KB2534111
  • KB2999226
  • KB976902
  • LocalPack AU Package
  • LocalPack CA Package
  • LocalPack GB Package
  • LocalPack US Package
  • LocalPack ZA Package
  • ProfessionalEdition
  • UltimateEdition

Behavior activities

MALICIOUS SUSPICIOUS INFO

No malicious indicators.

No suspicious indicators.

Dropped object may contain Bitcoin addresses
  • firefox.exe (PID: 2952)
Reads CPU info
  • firefox.exe (PID: 3696)
  • firefox.exe (PID: 2952)
  • firefox.exe (PID: 2420)
  • firefox.exe (PID: 3040)
Application launched itself
  • firefox.exe (PID: 2952)
Creates files in the user directory
  • firefox.exe (PID: 2952)

Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report

Screenshots

Processes

Total processes
34
Monitored processes
4
Malicious processes
0
Suspicious processes
0

Behavior graph

+
start firefox.exe firefox.exe firefox.exe firefox.exe
Specs description
Program did not start
Integrity level elevation
Task сontains an error or was rebooted
Process has crashed
Task contains several apps running
Executable file was dropped
Debug information is available
Process was injected
Network attacks were detected
Application downloaded the executable file
Actions similar to stealing personal data
Behavior similar to exploiting the vulnerability
Inspected object has sucpicious PE structure
File is detected by antivirus software
CPU overrun
RAM overrun
Process starts the services
Process was added to the startup
Behavior similar to spam
Low-level access to the HDD
Probably Tor was used
System was rebooted
Connects to the network
Known threat

Process information

Click at the process to see the details.

PID
2952
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" http://alphacentauri.com.br/Producao/hhh9q-esy6y-yfovq.view/
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
––
User
admin
Integrity Level
MEDIUM
Version:
Company
Mozilla Corporation
Description
Firefox
Version
61.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\kbdus.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wbemcomn.dll
c:\windows\system32\wship6.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\profapi.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\wpc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\mscms.dll
c:\windows\system32\winsta.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\sspicli.dll
c:\progra~1\mozill~1\nssckbi.dll
c:\windows\system32\explorerframe.dll
c:\windows\system32\duser.dll
c:\windows\system32\dui70.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\fwpuclnt.dll
c:\program files\adobe\acrobat reader dc\reader\acrord32.exe

PID
2420
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2952.0.1609618617\289745370" -childID 1 -isForBrowser -prefsHandle 924 -prefsLen 8310 -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2952 "\\.\pipe\gecko-crash-server-pipe.2952" 1480 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
61.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll

PID
3040
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2952.6.1417339836\1729331357" -childID 2 -isForBrowser -prefsHandle 2484 -prefsLen 11442 -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2952 "\\.\pipe\gecko-crash-server-pipe.2952" 1700 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
61.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll

PID
3696
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2952.12.52777897\4115213" -childID 3 -isForBrowser -prefsHandle 2888 -prefsLen 12017 -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2952 "\\.\pipe\gecko-crash-server-pipe.2952" 2912 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
61.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\wship6.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll

Registry activity

Total events
315
Read events
313
Write events
2
Delete events
0

Modification events

PID
Process
Operation
Key
Name
Value
2952
firefox.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
2952
firefox.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
4600000069000000010000000000000000000000000000000000000000000000C0E333BBEAB1D301000000000000000000000000020000001700000000000000FE800000000000007D6CB050D9C573F70B000000000000006D00330032005C004D00530049004D004700330032002E0064006C000100000004AA400014AA4000040000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000002000000C0A8016400000000000000000000000000000000000000000800000000000000805D3F00983740000008000002000000000000600000002060040000B8A94000020000008802000060040000B8A9400004000000F8010000B284000088B64000B84B400043003A000000000000000000000000000000000000000000

Files activity

Executable files
0
Suspicious files
146
Text files
93
Unknown types
52

Dropped files

PID
Process
Filename
Type
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\crashes\store.json.mozlz4.tmp
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache-new.bin
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 08fb67cce8874a7a589ce7207057ced5
SHA256: 35088b419e25c6f605666f63fe9579db24e4f9193ee34e27622743c26b7279f1
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 78ce148296b434d7b0d3a5b5cc85451b
SHA256: ab376ad8d82dfced7b37cba8e6fe7a56d165e71326ed257a9a38853ca6bc00b3
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4.tmp
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\about+newtab\idb\3312185054sbndi_pspte.sqlite
sqlite
MD5: aaad850e1f12aeee8230fe561d9606a8
SHA256: 4af386307c241ea767a27c7fb2e5b78309d73abcd4dc30cb984aaf5baf01b4ac
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\about+newtab\idb\3312185054sbndi_pspte.sqlite-shm
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\about+newtab\idb\3312185054sbndi_pspte.sqlite-wal
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 78ce148296b434d7b0d3a5b5cc85451b
SHA256: ab376ad8d82dfced7b37cba8e6fe7a56d165e71326ed257a9a38853ca6bc00b3
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 6bcd11f50f6b3ba5b46b7145ba0d0ee1
SHA256: 1cd3594621b6b22eeb1a3d0eab277d7b27318c0f6be7994a42127241ea582d0a
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C886C15B36E63849FB9E86DCC97456303F590459
binary
MD5: 40bcf222b3a522318b472819cce3cbf2
SHA256: 8e437eda3ac4dfd1d2dcf40e940d12e7f8f9b4bdf8e9a5d1991b2273950bf367
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9CE0F8410366250BC2EEC376867153912F2BBDAD
compressed
MD5: 746fd6681bd8a529915a6b23af35a4c1
SHA256: c157c62dd17d7458a8d2a9520657cfe60072690264575762643cb45984aad3e5
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\38A9BCA48C54EAE960D28F77EF30354D7F8D4EA2
compressed
MD5: b38ebde339338f0f2d54fa34aa617035
SHA256: b19b80e831434dc7201df521de69a48ff70b8ca47c1003d8cee17161b5166098
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4F64086534EC835491D6BB6FA58AF68D132E55A1
compressed
MD5: d13783b4465e89473e6f122635a347a5
SHA256: 345b861479e6001a0ea4d6a0404cb5f659cb571078cfd09c60a0b144508ffc33
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: fb233b8dad9e6a63eb7404178c57a504
SHA256: c0008d7ccd42fb31b8d9966aa0082921964929c38e9fe892d474585fd179d0e5
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs-1.js
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: dfcc37bc9051e2bfff84c243e0c731b7
SHA256: 5575f9f5a2df71aeddbf0f9d314d3e28d92749797c6626d6d47f01b7b4e346fd
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\378BABED0F1D98C950E5EEC706B712FFA3580B72
image
MD5: f19cdacd18da2d60dcb05474c4219842
SHA256: a348df3c57ec1075a3badb867ed95e63042deab81674830f5f619323be5bac8e
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\xulstore.json.tmp
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\xulstore.json
text
MD5: 120b885c3becc77ebf6b7d377e5e867c
SHA256: cd256c79351140a6e27ef0373e120f245d07b189130ebf40baf4d3859897780d
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4EC4CF7EBCC5D45361FBA144325799AD3C3E4121
image
MD5: 4082015ea58241a2003a04f5e6fa3737
SHA256: f2d8d49a3ed4856999c48845da4ccc81d96371d93645730209f961384f9c493a
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C23AFFC7C2EFEFC2E7A0C18B8B2267E5DDA30C08
image
MD5: 6fde6488b77149a9350cc7fecb013b8d
SHA256: a71388ca455a59b99225838d7fb5d86781652345992b7d66c4ef52230426b7b8
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\37200D45B9BE2B8387CB2922F937CCC5F34D6AA6
image
MD5: 1247df31a336aba76548d3f2946e5274
SHA256: fed838da12c428932c170a73afe78ce9e971540d055ad86b23c640be94d1daaf
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C1C490A891E76DBA7253E4FA76566D188EA00665
image
MD5: 675f9645ff4cee2c68d9dd758d8fa993
SHA256: b7f1461159416c6c0e5b070521b8eb94f2d5c23ead9742df407520d9334bcbcd
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\01D708609052A492A47EBA7A8DD53D14DACEC5C7
image
MD5: 1997abb9a159db35e374980d3ed3d161
SHA256: 3e4b93f8f77fd335e84ad9c0a271b18268aa64480de5d852dcc7bb7f1267a7f7
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C2EE0EFD1B24B5CED25D27D31880F6C43A9BCD8E
image
MD5: d81b16f1d9cd62c959fea69d1b32c205
SHA256: dce8d168191735e19f7f50f010e7e0006ce98306b4279e6de864d11b70a39278
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5B9F5AE6EA06500ED1225AC36705325874A3A04E
image
MD5: 61e0c86425bfc7ce1fca385ccc417460
SHA256: 8a4f2d09b2e5d0fb420a61e9480c758e863f7397e40882b448aa6dc7bbfea620
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6DE0CD05AAA4269A488F1A3CADFDF8C84FD9FCF5
image
MD5: 919d1a6fd4e98f4bb1fc8ec889eba363
SHA256: 0413d0d5fc6d7915e823ad263612df3d133d23c10966325e0ff587b3c4e8c198
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FFA1DCCC60CB709983A646329F5C53E81055883D
image
MD5: 108ac637f8c0567edaac57c43b2164b2
SHA256: 0661b1de9fba365c53356c464faaecbf72b388cf13ccebf73a024bfaacfeb033
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7649EA4C068501D19BDF4B703F822A573821D35D
image
MD5: 34006d7cf49e8c4dc74c3a844c9dbc34
SHA256: bfd524e2f12742edc576bfb0d5dc43622b408b5f796402a37aa77b91564f0e8e
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EB99D7C723B10610087D77B8DF1FA9856B71B9AB
image
MD5: f2030cef5666fdf88f3bdbee8bef9499
SHA256: 58e0b4a4d90bb457ba4d5ac81b6a383efc1f76be3abee9369b8bbe3027147fa0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4E600BA4E7C9B5FE6FF5652C70B3F45ADEC7CDEB
image
MD5: 6d3a376986d022de11960719fd4b9174
SHA256: 1bf03837d755c97303f41fc84a2cebbf9957631801226c401869879d49f381af
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\ACB1EBE44DF3FA9E2066450E52D3AAFCE3078C28
image
MD5: b36d996542f5b82b378e583356799c90
SHA256: c46a2cc9a7cfa07937398efd827e2cf0019e47fc89fa972bbde94c48fd2f2e30
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D881F9A724DCBD1E6C8ADA0173D31CBDAAEE1E96
image
MD5: 4d99469ebe658505dd893653ac752f7e
SHA256: c193b5828f3e36c010f23218c7a190e3c8e9a908fd6711efd498efc95a02b096
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4CCF35F67B2DB4947FDF97353875FC5BC07BACCA
image
MD5: 420d144faadc35415dfe5e364a38e902
SHA256: cce235ae8ae53ab53d6bff58d3603721ad3e77458f5b6691557ac00c25ad9fc1
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D75EA38A9ADB2B83AECEA0C52881804E599A9D70
image
MD5: 934bebccd58284448fdc66a9facf086d
SHA256: 0d5cd06c8eded85f029e657768a16faad3171d11e3b92e243a8d50cedd0881a4
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F3FFAE446427B63839A950C6542BFAEE067FCE42
image
MD5: e7050e1131d1604d0116daf548fd00c7
SHA256: 93cefea04aeb2c4ab3199f4b56e2e6aec22bd0f433d832a5b3c7a8146b154807
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\498DF92D294C2EF8130AD2B5C7033719A2CAED71
image
MD5: 70ceaa1c63ab0ed4c506b9241f323ee1
SHA256: 48c6d61052c96caee7983381bacf5819555c0579c37010ddb60d6ef214e71768
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\66A587E5ADA3CADA8C5AB11E6CC8B59403DE08E3
image
MD5: d878c134f2b67a818444c7a43ef23670
SHA256: 0339a229a83b622e016e02f64414dacd1194e84ea2a7e6789863c54d1b2a3246
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\073A868092E2F9A4E75F2CD04100C7CDD5D17236
image
MD5: 5709789bf4bb4ecb08f8efb1751a0653
SHA256: 3b5839752555259963ab20c827e2de90818e9dd296bac5e06a0f7c62654c3c15
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D10FD8AF6D635746D71A41A68F1B3D94F8FF58E7
image
MD5: 806ed2d09983118856a4351e79d6ffee
SHA256: 11b3db63603deeaef5c8ca815937334f2321dbfd04c88202b033b081388b7b9e
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D5EF7CCBA91C1F81C4004B753D1BAC19E4C8CA6F
image
MD5: 1eb0e8dd08d83265c5d705508591ea01
SHA256: fc8106796c7ff406fbd18e2ccea0bf0d0695ecf68fd173b556208f211c467557
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AEA25D1E06B022AE1B11428835D86302AD13878F
image
MD5: 79514c68828cf30774acca0351b2b9eb
SHA256: 80007c9dace1ff60ca2dd7de5ca2ecd3122e54d67789373f6b1e070f1a20bac8
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1FF80B1350B6E08BE5144B2397EEE705E445647D
image
MD5: d57e40566f490124aa6d14aa269f5125
SHA256: f2b7be57a26b6f54ad1e5e5218e63831155bdb4e542dbc1c016b28416740677a
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CAFCCA299A3BC423D24BEA4E1A3ED9AF6D50D4F7
image
MD5: 538a05efcaff448ac0a84b9694fefadc
SHA256: 36ad634a5545f84b40a4809419334f4b87de1496e7e2bd07cd2ddc726c2c237b
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C3740BBBAA757E630B56879A091D4EA0D041ECFE
image
MD5: 701fca695b9f4fd9ddc8e1e3226d4fca
SHA256: 2f430b9f0142d50ef2236abdc92721011cec7b47942e81fbe00a29a440c0b230
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9163F4D5D5CD38CECF92EFAEEEB10E3F6EAF2C9
image
MD5: 6e6bbd64976c6970f8bc75ee95a90700
SHA256: a6dc7949571f0a5879575d3041b77e060bae2797d99ad5c01447efd66c4a5348
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DBDE6DD2ED4143993257CA2B2C2927A4179FF7B2
image
MD5: 40f35f19898f33ddd19b4a68e2d97ed3
SHA256: 3ae88c9ca9dd5dafea32d5df3328cd5c82f20e5fd23feb197967b40811d52405
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\166AE3EE19AEA3255590A9E596D1B995D5FA8FC4
image
MD5: ec9a12cf294d6de829a392aad6894224
SHA256: 4e755240727dcda9103756f29db7b7f8219ab0731969aa3ec9f3d02633c3d991
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\97C56D9A5BF9BB2A9AB1CD4764733056357F7E01
image
MD5: 0d411dbd6195e0b3536f28b3f89ca561
SHA256: 134611a4309a92cd0d30c8bc8f7366f6e1287fac8e6dc2b669a5e24e679e0902
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3C3FC0B607DC248FD3A4C0298E6697CF9D95400E
image
MD5: 857dcf3eb1a5e9b505179c39d9e27564
SHA256: 3d8227ed7b4c09450b2f07928bcbca8951fafe91885363cb87b1baf9d9c87af7
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\78E22D98B93E48D2CFCE8289A1DE6ABDDC8E44FE
image
MD5: 57719d12e46a80b06ae39971fa839b1f
SHA256: 8b0d38a59c8382bd07bd46d7f69aa8752b1e080ab88a4333120fa328d75cd078
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\19BAB6048266099827ACDB9AF6B8EC78F7C9A4F1
image
MD5: 4d44934342e6843bf800ac74474dfbee
SHA256: 2e836f46bee2349e8f41bff8473702f94c8f19e54862eecb08edc5a4c3a428a6
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7BA39FDA54228C35839EF30713486F4D63E6A977
image
MD5: 94c95027c614d48a1a501574468cf781
SHA256: f471ecd7472ae897104543f3d571e3697c5ca494c15b1f1b59d7b22e5164ce4d
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1E1CB66BC77E429C8D95BF49AE88AEF27B02754A
image
MD5: 2f99ca263b94fead7b98b1d03e1ebdb6
SHA256: b368b4bb1f6df934c1f31df9b0b728e8aad8d2ccc9220639ae77a18baf56a349
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0F829C423AE27EF218AA54800082D5A04F6B980E
image
MD5: 0dd6d94ab97a94f2a39fead45569b4e0
SHA256: 16b2f00a8ae48d5229f84e79669c97a6baeb4d0d39cb6bdcdff267a7a3212a76
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C2A9A343E36D7EA832660C81D35DDE087ACDF84A
image
MD5: 19196021d7bc3960d09c7eb8768cd59d
SHA256: 13530a055de98a8de6b24d403a5d2733c77d278c3c84adf0da92ad20b912766d
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EFBDF7E37AACF93BE8D47BB282E662D12C3115FE
image
MD5: 955698bef81010bd6254ee916309d955
SHA256: 059435b49ae78d32f1ff74879454c46bbe68de6230bffd7f329950f3f8d031bf
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\204E73EEDA0C0D6599FED0C6060551F7F3054F2A
image
MD5: a891453c51cf1217cd7492be97e22584
SHA256: 08f55b715f70e32c40103bd151dbb58b2dd628a4692244a3bae26f2aa3a281c4
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0B371098F2A8EFE31B776B087C11C9583E4FFAA3
image
MD5: 8c69a832bca98e686979490ee8a306ec
SHA256: bb2163c7153de32917f4db92c6153040d339e87e641c431579157619dab1f4f8
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8AF59488B247EEFF01EA367B24E2A5229F1D44F2
image
MD5: 2c7855d10a28a4e7293c7a6421eb4e49
SHA256: 16cd894b43224a77f1879af9c43c5f749bfd0d3b3f8aaf90a969874c3ae1083a
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B9FF07B64F62E15309EAB491E52BAAC91602FC02
image
MD5: 4b4390693ef2518cb81b1d318d13b193
SHA256: 82901df8c57aa0cd0c9c00edac0c2c2ac2b6d29b677a00248daebf84f53fc43f
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1C5CE20AF76FFFE327A3B8315848717F1B886641
image
MD5: fb6fadf40bf07331b70edf9aad6fe008
SHA256: d6ab515c9eb4cff7d3d8bb95f5bcb64c44693e0661664d90b578728e16016568
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EEBC0F79412E3637A19632C7DC07685CF7CE88F8
image
MD5: 4d6f56f99a9c0097f429f93a6d590038
SHA256: d03b6270af24e21f7c549fef4da14efa0dd6cbf39e79295446a9629937136257
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D0BDC496F3AA63649A8CC8EE04B98FFB1CB88182
image
MD5: e03f7475c43365fa45613009dec361a0
SHA256: 25509bdb08a50b9d0e70e2aeaa1924f93777157fed8136b49b2f7dd3a4e88eb9
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\08DD22430B8466DA076FF0DA091E6C0AC092A032
image
MD5: f2d19dc689fa8dd5561318c228e92072
SHA256: 7116b0101c3af9bdebfe2d84aa5fa959dff110bd4bb717e05109e1ec6edc4b63
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E23B1CAE3F4EB2BF15A57FDC48A515D13B25617E
image
MD5: 165b08defa296c3ae26b0da7df241588
SHA256: f48a4c6ad940b14a9b33a6916fa990f8f59e6279c0c02985dd006fdccd572069
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1AA973EBA529C2985F8F453B2E8050AC38E02567
image
MD5: 50aca944a0416b9053d8fa5341320876
SHA256: 780cfaa291a98011f81bd76df392251b2cee9cf6a4e3ee162aa9a87127c2b569
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C38901D3B17BB95B569FA2B32B5F8BA5A571E7CD
image
MD5: 5fa8009368a9dd7afbb42ca5a4d65f09
SHA256: bf9e4a93c125e5484f95e53551a00386f92f80097beb03baca9e62023872d17e
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EFEF5B0C9384416CDC746F999C461B74BE4D535A
image
MD5: 33adf542c92b17e2d2be8f1eb7942887
SHA256: 5cf4964bfcc2b461680574ed4ed9ae39f9f76591b5d9956dde59c3f937e1ae0d
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A3DFF90F0D5E9961D3B0FD5C2AB7CE4E11360CE8
image
MD5: 80005bf964cc69aeca30b5c1f36b3acb
SHA256: 3731012647f5290ffa342993539cb257077ee095137ab43224fcd5a42f998006
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7DC920E1C1EF0B252AF263F21B5AD525708C6FF0
image
MD5: 34887e616954fba7d8eb534fde3e248f
SHA256: 52f67ca0a75fa4286d4ace8ea0c86c01856f84b401a8c86a21dd897e6d1dcd26
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FAF28F579134FE3BF088157D2168FDEE03F1690F
image
MD5: f6a1dc3445bac8d9fc50b9cfa2dbd2b3
SHA256: 4ff8a392133572b2b2e0dc17a2373afc99383feba2dc5342658cae356cf4e87f
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AEA40441F0DA0170D13C94A5201A853F8A51F4F3
image
MD5: 4aa853fe53c8b7ce7bc0e828bea66027
SHA256: f8bf6927c6c114fa90b96278f3ed03daa34822c7c0c178d0255f363d78d9fe37
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5310BEF72C30A226D91109D61A8C69C4733F4A35
image
MD5: 594eb31e88b49589df5d4a5300e5ae0b
SHA256: b3176f044e976dc7131f0aad2eb2c23b3cf16eb4884cfedf89e83b0d22135f05
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6D340BD3EAB2FCB62C43127C79FDD34B78651BF6
image
MD5: baac55f3b284d21dfb6555aa456f786b
SHA256: afce81385e257140971236b23a0dc067830e58296b63347a4cbacf8ef6d32898
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F7337FDBDA98700A0CC6EAE4EA9CD10EC1C84B29
image
MD5: 2f9f3a982d4f2eb98a3af85187c6141a
SHA256: 4076a19e6f6969842fad8b74a85bb83a54830cfaf858ac4ce965618de711d9eb
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3D837DB9A4BB35FA5F764B2913D913EFECEABCDB
image
MD5: e03e8384881ec8d1780751147b7e2c4d
SHA256: b17babf259e3fab69c28e06474d9dec3ffe9ffcbd2b46825c5a359bb671e4a57
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6E675744D213C05DF9F2586CE43F1E3CF2EB4B35
image
MD5: 929f5b3b4772429af1b5dc65080892a7
SHA256: 7c29ebef677a93cb840d8e3bee95121809655e7db957c44cb330a7e0b7f6a1fc
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D2BB27DE56DDE1885996ED4AD63DBE2E8D24E868
image
MD5: fb6b6e6aa3839c0265b7f051fc561873
SHA256: ca2d51290e037626074a66627c20e4a984c707e3cee44062e0a28a2e1729f999
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7233F8A37444717202E57E7761983141AE9CC5E6
image
MD5: d2f149329ba32159d353869337bc2aeb
SHA256: 6a73b4e344ea4a77a82bd0918492b7d6f3a303c46617f17a60fd51013545aab1
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E325B486B777C14C29762600D998974140F8FD34
binary
MD5: 26f5c83f5dbd501916603d488201b8b9
SHA256: d6c06cb308d89c9ff88eb396bedcae90b7e39426c5ac76a12bec6657e4514e5f
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AC3FA8CEEC5D3976781C9F89ACFDAFE31F4D9221
image
MD5: 496620c05b0249790c7f0af3d832c84a
SHA256: b5877646d8bb24346279f108c00e31fd0f22beb30044810b7240b0cf6315004b
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B2CC365517295FBB34EB500391F9645B29CA35A4
image
MD5: 5640855c8bbb1ddeb1adc5e0d1db1174
SHA256: 82c0c44ab03d4e246bfcf8f08f41bdd26de8fff7555cea9076982f522ef5e101
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B7E481CB87482D6B062A69C6639565657D79FDFE
image
MD5: 0b91b8092c54a76febe7946207b722ad
SHA256: bed00e515f521995f564617e90b4c08946b76ebb923b9a945a2cf33c382c3e70
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\73C9EB58578A14EB35D8F34A0AC84BF10F29B630
image
MD5: df23e419ef47f2ddac593858b7a5d20f
SHA256: 299dac181b6793583cab52992a43663cb9d271eafb77bdea9adc248630964947
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\10EC4D31EE6889642D5E2CBD9C05B9ADAEADA8E7
der
MD5: 81d63520c6b63453f69a9c4f7e9d10ad
SHA256: 22e8a22ff0d65824c7fe3fffae964b2055eecafafaebda3a3cf53664e3546199
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7AA5BEBA6D547D45C2256D165A6B4BA692A46AB4
s
MD5: c5bb1de956bd7481afeec2afcb7777d8
SHA256: 4d35155c1bf1ebfa92d3b2565256140e699bb41666d05d76c1f116b26ee4bfaf
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8EFD10BB2F87ECADEC0B5F638F0C31A25395CC43
compressed
MD5: 629d368680792903f1d9a62a22640c0c
SHA256: c4acc7458ab7731140fb2ceefff7ddd575e3d32e1c562aeaac38e9bd8a3d4054
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\754E4CCEA488B121A91F09842CA533767FBB91A8
compressed
MD5: 4df4232769e731ebf69765269c4302a9
SHA256: 631694eae6be44d9dfe5ae6f6e088140b848f3f0408bed68f7867b5afbb8a553
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\6640
binary
MD5: d3493aa39714166f584de2d85f445ed7
SHA256: 6ade050ded8ccab8cdfa3f6a6c06d586b0551ce66e198ad676f7040eb223754b
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7EB37819B848F04AD66F8390DED513EB83BC6B75
binary
MD5: 169a1eb9c590b735d1526897c93507e2
SHA256: 7b52caaa41ee540e376c1d93f25a00f4d9f6703082b67ec420ce7a5d38a50cae
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E325B486B777C14C29762600D998974140F8FD34
binary
MD5: 7033a968be6c4ab56921784e5dae60c7
SHA256: 962d2120c2febe3250c470dbd00e3676475745934981a3d21db7b694717e790e
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\10EC4D31EE6889642D5E2CBD9C05B9ADAEADA8E7
binary
MD5: cd7c814adffa3624836247b52c02dbc5
SHA256: 7803f4b0bbcc7409fa99036dc4123e3fda96385c0ad5ad35526b79dd3c96bb8a
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\754E4CCEA488B121A91F09842CA533767FBB91A8
binary
MD5: 01898f419074ba62c8213f05e3fae75f
SHA256: 969aca78aff104e44d8188269195eb4d59c4f4029fa718181cd80d5b64b34753
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\75A419ECC30883A6BEDBAF499E7C371BB1879535
binary
MD5: fd1fdbab5c1fdc3046c9b2987ac2855b
SHA256: 943622d8bd7a40015513495b34c558ac3bb57261b29ab59887ce1d8582fca418
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6122997424D1946AD99EEAF99D9F101488FEEB45
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D01B5934E7517E6CFD6DECDD386C845CA38719D1
binary
MD5: 3f238fb99fb80cc7ee5f603cdc7858b9
SHA256: 9deea80c8be89315e0fd02f57a2691cdd5fdff83cdbdd4446c8e5d1184db0203
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\23C95D18D73A8DE60C411B3459495972389AA185
binary
MD5: f7c69b4d09bd51eb819386a204f83941
SHA256: cacaf8e2816ffc9093ac7d87e691a3b3da56088c81cb5971a43b171aefd3b0ca
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\about+newtab\idb\3312185054sbndi_pspte.files\2
sz
MD5: c29e943cb5c5e456f96fee0d49aeb521
SHA256: 409717f04e3f1f68aeeeccc97e20a03148104ce3ee781db422f0569ba7047f00
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 2a015d643f5822d589dac2019ec8d5cf
SHA256: f3714f4eb3d949876ff032fd2baa638f341bb11813e315af65bcc1aba37eabb4
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FB3F0178CDEDE2CA610BE416EEF1AE9EE9E689C0
binary
MD5: 4306460ac0ec0a163c5de494d9a49858
SHA256: 3e2097320b7860c74cd50d93880cfea90d447acbc1a0440e526965148ba01f99
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\384FAB0ACC7CF07C004D8822BD404E72959089B1
image
MD5: c876ae4f4bbf17c1c4c7cd97e5f064cc
SHA256: ac1affe73a2129fe0378e501d914d14600a096f68f220351199155be6662dc4c
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A3E930EFF2ED2333984F0FDA9B53341184844D0C
image
MD5: 42e54beed12120b9a470c2a9df94f6e4
SHA256: 6e19f84e8b5e097aecf3446368850bc1e8b105874f74d3f4536d72690abc4315
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DEA3682E23E6702272F8980D466B2F0489E2B3DE
image
MD5: 0483ecf7479e3e8df2b77eee7fb46ab8
SHA256: f330c75228c9beb64d9e8b76576bb06953fb5fe3fad50a3ad8c61aad7da28a62
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3010C2725EBD0A41E7A6C58851B225AB9A8D2F65
image
MD5: 9bc65005abba383df28972bad944ad60
SHA256: 529591d5c0c1428835bc95974a3afc52fc7c9626d970e45aca321dba29552acf
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4A5E99263386A3337EF5C0BF10141C5CD78AA75B
image
MD5: 2fa6ad27eb5bd04092f33feca20a08e3
SHA256: 9e6e7f5833d28e21887a417a8acd6da2b5d097c1f865b2dc3e85e75562db6240
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EF8182E1EA576369697BDFE327BCEDFC50AB8BC5
image
MD5: 9426bb1bbe00ac11b40fd30332b98fd7
SHA256: fc400b29b3386f18af6cbbfb41abf749448c8009c9641a75a277c22698369955
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AB81149484E442CA75A6912572A02C94319C208A
image
MD5: a47e1253e2458e09d9c2bacc1dea62d1
SHA256: 6ec37e24cc6f950753e52f681782b39cfe4fa70fb8f503b8271a92d2a2bcd3f0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\057009DBFFAE18C7AA998E678CBC691835969892
compressed
MD5: f05c95a9b14527c7d0a9784adb945a1e
SHA256: a51c4b404976e7df9fd2f63a20317915c8dd873a2242ca73027371602a631078
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\532835BBD1D2D95528753F23B1A2DC0BAF7EFBD6
compressed
MD5: f991c1edbc9f83fa184928d46dd07f23
SHA256: ba31138680f946146b3fc47a166a863f50036555c2843381736c6e9ed601bc21
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5FE95722D8A77E1B76BF2C1BE2D5E54669449D79
compressed
MD5: cbc80c0d6143f34c17fb6134fed8c0d6
SHA256: 016d2089b1b6f3573cba7f54091d67814ef96aa07557d7408efe36da50c1cccd
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-backup
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256-1.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B9381225FB8F9427C6E2EC5C3ACCBFB4121D8BE2
compressed
MD5: 4a79dfe76c3a91ddfcfba2d49928ca24
SHA256: 53c1f4909e1a9b023f8ecb45c2ba564c0f1c043daebeb6d23849fc424d557f2b
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\87F9B45F24751613D887F5D48C42D0A6182CE74C
compressed
MD5: 4375e20223707f273350f02ba85d4ce8
SHA256: 1e435925211c4d60dfc8b9f5f8b1fa84f4f6669dd7ee328b6fde25bae9b12884
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\605352E5E66AF45F2ECF4A4D34B74F872EE4B3A4
compressed
MD5: 77590630fa1ee3b0c60adffed5b910ab
SHA256: d993c3743ac4d734cd9825743f776f42daf7146d6613cfd483cafdba69814b4b
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6130276278284DB99D8EEEA1759B48E832BF728E
compressed
MD5: cc1d14124816a3373f0bb2908e47141c
SHA256: cb1f7f706f9bd9a628262ad9eef4111647a5b4a8eec7cfa2d5fe40cb4be43edc
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FC6E6A80B58E3AC682AA3C32FF3679DF4168DF12
compressed
MD5: 1bb63bd0c477f7074a2135f179941e75
SHA256: f607426de6f76c2e19c9200f6d6ed8612ef66dcccaa6419de9bc6f77c685d100
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0748FCA6F9EF0DDCFFFDD873DCE140B9A27067E3
woff2
MD5: fb1a8df1b029350370033b49f204c1ff
SHA256: 93988ad3b5032718bde79071fffa47d615e0541761f12c1c69b5e76af0e25d82
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256-1.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\08C1CECE33336CBF50B4D7B897D1D227CD1C8C8B
ttf
MD5: f18e99e33da181bdd3727dd9baa2ddfb
SHA256: f631c018f1e138aa6dedb2888acb53c0c1f882ba545a2212c84fd0ff08f481ba
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\ECD2DB3CCDAD7674A3C29CB26EA92C8CDFD066F9
image
MD5: 1f22ca1b2529cdfe701ffea51eb303d9
SHA256: bdcaca7b71ba1c6aa266595483c8f4eb2a7ed8258e40e2df9acb85f1f2330284
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.pset
binary
MD5: 0829315403ad23abd2290e12162c4900
SHA256: ece24fc478b3f43beb7565ae4e58c9417f85e3c6802b8413460f43afec721c05
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
binary
MD5: 469d334e6139925ac6bf71023606c4fa
SHA256: d716ac71dfb3d2b99f80c2457ef5f184f3e7645f10e727d6da8583ec38bd9fec
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.metadata
binary
MD5: 45d89fcbb749aacc5c22c03811d6da45
SHA256: fd0a9f108637246a58e1ba7aa42d8f54f2fe162edae9bc08842778780809d0c6
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.pset
binary
MD5: 9c5de11505b3acd1cf4f6e86b407e572
SHA256: 7ef2eb34635ae1ac053fa6c813cab0aa61f1eb237bc7aeb1eeeffd89f133bff8
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1A901CB03C8E87B7B1C39DEB715B435B2EC0D79B
image
MD5: 3915171439f75450ede2410e65394c91
SHA256: a897e4a7cd6f6ab1d908536a4a329fa9f013d09e2f05603ad51d39273ad75891
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.metadata
binary
MD5: 90107201b220ba94227652f123ccde56
SHA256: 3afb7c5bafd779b66662d606ded70b247c7de588bfb53df89931883ca3d946e3
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.pset
binary
MD5: 4d8655315ba2f3d50fd660cb3c28f355
SHA256: b57318b7b4d3bfe2a5de61e71e9b5964e9b9515250b90a2bb941bcbc2e59142c
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.metadata
binary
MD5: 2904a0232f44ed04edc03aedc0ad96d9
SHA256: 072581b1e4293fbe7e1024fefbdc6c6ce381d9ea2a43d5592a6c73cb0a84561d
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AD4F3EED516F68F16025804E94C9E567DCF14C5B
image
MD5: 6d57ae44135a92424184998d56153886
SHA256: 89bbdbd22dd401b830b4ba4534919207130650dd93adbf0d3e9cfbe9f989793c
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.pset
binary
MD5: 9ace02bfa076ccca8d6e518d5dd927de
SHA256: 98b42cf4836fd6fe3a7105c9afc5a02c19e70d9f0a76b374b412826b936864e3
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\029C61CE59772CCFFECAEFB1BD8D8012CEC4689D
binary
MD5: 5c7f9b09419c62ae08183e66f997cdcc
SHA256: f56126fd010adb9ffa1aea2a78c566ad892986bd6cc48a976596a1829c79afbf
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
binary
MD5: a7d4e1eea510b0bd8c486fcb84f397d9
SHA256: efaef89f43a42ad187835d62bf1e920a8c037121b2bd91154460582b43f63b67
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.sbstore
binary
MD5: 23e438fd4af1829d4469ff8d0bc83854
SHA256: 96e0d7644aea81d26f039ae633eb405583e11b020363090dac5cad9b4b188846
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7DCBC3F00ACB7E6CDD048D84EEDED495FB32809C
binary
MD5: c71ed38c44c50aafcbcda2b6c09a422b
SHA256: 9f93cad13fc0211074632a8ae1ebfd0318339cd6132371ad9d1ca448ac8d9fa2
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EB5A91D33A890B2BCB4CCECAC3C94F8DD37C7822
binary
MD5: 7d4fbe8d336a776c446660f49cb02a78
SHA256: fa54ffee2e6aec4ceb06e8a8ca48b8538f92e02fbca0f7e2a1e44e3e33ebed52
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 85b2f34b55f702c0477adca04d70b52a
SHA256: b29bd46371e4b1859e51c32158511f8222fed15d2450632d7b16e9e9bda4ed17
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\64772A6F218AABA7432848A8495C1C9C4757843F
der
MD5: 241da8dcc69f095e0650dc32948eb5e1
SHA256: 48d7a4b921dd88b446feb1b14c3f47c74fb35022a062dcf3e0f068e2eccc12e4
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db-journal
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\about+newtab\idb\3312185054sbndi_pspte.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\339504076296242F96AC92C66D3F48662029168D
binary
MD5: 2ae7f66799ebecb7f2434c324a00e8e9
SHA256: ac608ebc0ad07ea7f197e35d43ab41a786cae07629e9227e1e8c1af6653a90ae
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EB5A91D33A890B2BCB4CCECAC3C94F8DD37C7822
binary
MD5: d6ac3414500ff3ed6f7d0a906a255e7c
SHA256: 8f46f134cbd6e2ee373d9e33309bb2baab7ac83bd45821857fdd65305b143a8f
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\24567
binary
MD5: 5ad41e7c650aec52d596f170e6300819
SHA256: 6e0c3a377b8e11a8e6dbf9b6a3c1a8749478cd36f78003d8672c4a2f60ec899b
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 6bcd11f50f6b3ba5b46b7145ba0d0ee1
SHA256: 1cd3594621b6b22eeb1a3d0eab277d7b27318c0f6be7994a42127241ea582d0a
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: cce5e5abefd1ced46338df12bc72332c
SHA256: 7e06d772aa491c20ba043baf1f73f221e02bc6dc2ddeec780a51ee41339617a5
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4BC68EC6D054EFAEAFFA86115CF62B84929D7BC2
image
MD5: 145188cc2ee0a9156ca378fa56cea73c
SHA256: 5b0504c2719adbc209abcda306906f35381cdf05f72c263c86190397d4cb4698
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B31040BBF3560B09354F11717EE76AEC0EEF1708
binary
MD5: ce98d4bdb5e398c9d6b16e0c24de7996
SHA256: 5bd95e187b35633748515554406fce2a18c08dc263f927598c869e85697af3e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6AC1DD184E8FDB07AFA7C74D394950E9D3B32257
binary
MD5: 511f41fd21774ea133351acc9e468301
SHA256: 7c5be17d78ef5df4f12a1270aa90a9d6834425ba489f6d0db490a8f44c84b599
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\876D6219CABA81E8EAF242D3C12C157E2CF30168
binary
MD5: 176a58a87b0651359705b75421b7d1f8
SHA256: d196c8afe140bb4989d2fd632d49eb0c4abe8fe08a284b87136edeebbb825dd7
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\78C6B845F563B09882C03913682762D55E7968C4
der
MD5: dab0bb63bedb6996c7bf5c0b3e3569c1
SHA256: d759683c362478dedc6b4b49870831b90b83327d02a3211f8aaf51aadf514219
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\339504076296242F96AC92C66D3F48662029168D
binary
MD5: 5ad41e7c650aec52d596f170e6300819
SHA256: 6e0c3a377b8e11a8e6dbf9b6a3c1a8749478cd36f78003d8672c4a2f60ec899b
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A436EBCA172855F2E1BCB8E2E8F9ED8EC534AF2D
compressed
MD5: 41e92d94de03e0a5e3862237be5c604b
SHA256: 73c3f92ec0cc9c6733a939bafb71633e92d41128b18d991f78da876db013fe0f
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BB771FCA6C9F8401AA1C809762865B71FE846954
binary
MD5: 50a88a15f65277940ac4b19014c0c7d0
SHA256: 673fb721a6dcfeed58ee2375b09e748a4fe443acc1fa351315a403f679c04ee9
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D50249AD0238567438E5B793E1E7B6FE023BDB70
compressed
MD5: 90b6f5c44ca670bb30c364dea08c9317
SHA256: b067d1ca5c93747b4b1945717cf73e85f92deac47d22f6772f4d8d0d4949ae23
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\68AC3AFAD32273057F367F4C10E9EF2D53C71DE0
binary
MD5: 062d61c7e6d655e235dd7ab4b964076d
SHA256: ab473d7484d57d3cb9754ba511764aa7cdde12f7114a2f06e80905deb513ef5d
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BB771FCA6C9F8401AA1C809762865B71FE846954
binary
MD5: f048cd1dedb13b0be725d3e95a06dc41
SHA256: 8143b03d0c7e81f64d7d93cd965a0408f1d29097b31e92c5a1e96d23cba1da9f
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8E3D561573F08FC1842629FAEF8A9C16DD8EA3A5
compressed
MD5: d2b4c1e7f5c5c235d98e5168c6b5c516
SHA256: 64e408b29d929de0bfad0c72aa47f2e3a7ec336b79b5a0c9b44883c2e4e86fbc
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A436EBCA172855F2E1BCB8E2E8F9ED8EC534AF2D
binary
MD5: 67a078a653c1a72c83e0d48e30be845e
SHA256: a1a776ae152050eca35e19eae51f2dc4aa20e656738a91ae2f637ae56357d839
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A477D3E3E5E66AB289EAB70F9A7B62038E471007
binary
MD5: 1c36eb4c5179e7df53a0ddf328f0a2c9
SHA256: 3eaffec0913abb4f2f8c91eedf721d72418211ca0f2f7a25fc15558c10a399b8
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CE150544528EB3E96A4CE6F55C6B768CAC3EC82F
compressed
MD5: b961707f1affb794e08ac8bceab23c85
SHA256: 74c9292076438bc94161c7ecf60416aa4923c832eda5645089b0dd8e327e2b7e
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\35EDFBBF0184A664B1F54237A5A06B6F82546CE3
binary
MD5: f952ccc3a1ba032796ac77eb831a9bdd
SHA256: 1a5bc9de360b7bb85ac07b2bee5524996a21655d685b460db04f28b33fc7807f
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A8ED7FC72BF2649E962ECB52704F94A3816B5DC4
binary
MD5: 4267cf0f044661e1341c698f195dc919
SHA256: 080752040aa434d888581cefb43e8d4d8d4cfcd659c5c2a54a6512d4812873e7
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child.bin
binary
MD5: d7f2d5d9c9061c4476fe3d633687b144
SHA256: 05b19d4ba0554357189291b438515ee956ef324d3bed349800c21cc2f5f5da30
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache.bin
binary
MD5: 4e40f89528c99afb3e0e6820da69357d
SHA256: 5e59a521128c4acc222d25c070ac2b5e8e69937d413790d423b4fa7045f1d573
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child-new.bin
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache.bin
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-new.bin
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\crashes\store.json.mozlz4
jsonlz4
MD5: a6338865eb252d0ef8fcf11fa9af3f0d
SHA256: 078648c042b9b08483ce246b7f01371072541a2e90d1beb0c8009a6118cbd965
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: a7b0ff197b001d924b6b3e288b6e0cdd
SHA256: 260443e8ca4e7a8c81228d026549975cd70983a55c7bd6443b07ee9d1fd4d1b4
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8185FD5361C7FB6E19526204F6BC29C4B6B393D3
compressed
MD5: 76137d0d76797da0277c0e5a2afe90c5
SHA256: 10b87ced1e4b756da9747416240a972413a4c3835ec0c4360d4e72d03ac5d96e
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8E3D561573F08FC1842629FAEF8A9C16DD8EA3A5
compressed
MD5: 3ecc77f3316c8a07dce9b371a67e4e1d
SHA256: babf2c3c9f6196fec45aef773094feb6ade48fd03d741ab08887cf903fa33e56
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D50249AD0238567438E5B793E1E7B6FE023BDB70
compressed
MD5: eabecd63a6e4a150a38f0c008ba3c395
SHA256: 8b412f99fef02b1b441eb3d1843ff976e1577fb59f3243dafd32c0335e4520a5
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\76710DA26305BA1EFCE1409390FF09ADEC8CDD99
compressed
MD5: 6679489a0607049d2470d0ee03096a59
SHA256: c5f98b83a0ae8c24a28b556185b5d0e3ec342c29ebdb0fc472d0134ba682e206
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D4311DC58EDD19033C863F2BC18A9146A55EB22E
image
MD5: 9264377fc17658cd6df51e9d70378b75
SHA256: ab731d5b6e1b97f6e09504a8ed8d42ea7d90341662924be946fbc3d463c27549
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.metadata
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\525EF5743C2FB0389F38A8C92CEC4C8B8CDF7863
compressed
MD5: 5a734e12773e3e73ccbaf01b6747da12
SHA256: ab36d4ac0da214a0ddfb232b50cf14f23a422f2ebb115fa332af6a98aca5556a
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.metadata
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AEEC800A2FDA81EA9AA7522D24284AAFED2E43F9
binary
MD5: 856e1d41a4fe4aa0744b8e2a557a1939
SHA256: 66bf5cf7fa380264d762f0155eda87ca2fdb7d38f3060476cdfde68e632d82b3
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.metadata
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\898B497555BE996B7CEF0581775028DA860884F6
binary
MD5: 968acd7e3e19941894e4e079fb0a2c75
SHA256: 0881c8c4ae12fd2434f2300ab9d5f0eb573ea2401f41ece1786bd57151787da3
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6D7DEF9D71F67CC4297C2B7A09AEC1E0578555EC
binary
MD5: 817f63842bcfd3ac41065579efebb44e
SHA256: e84fbbfdade07c09f02d3be882a4c4ffb760cc6897b154d2b23f282033cf60ae
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F8157E63DF8AED4E1DEED2E46F2A069FD644B881
binary
MD5: 3dc9b8854decc7438e10957759eb64c5
SHA256: ce85addc6cdf5ac25da5fe3288b9e5fc349b2a93ff414202b490b5630525975d
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\672A28D9BD69D731CF2AFF251AD0FC5A47ABF588
binary
MD5: 8eaa8b44d57d9ad820b7598ffd3b41a0
SHA256: f164feec82ef810eb5b1e59a1ebc20e93bbd5019761a443c07862b849ed50dc8
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6FA748676A6EDA64A2774AFE1D0A0D5060829C69
image
MD5: 7330013c275dc5a4475e1e96963c3f3e
SHA256: 82f156f6141d5874f2b1e2b9ae557dcb88bb018e4187b55bcd2ad2cd2f9d5206
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DF3B4986B55C1554DC9E978D713D5C5C34646C6C
compressed
MD5: 8adf4d14bf2794dbedee81e835556a3d
SHA256: 9c1d30045c5a908c6155da4bbf1e5194f98f5107d61fed4dfb30bc27c20cce47
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2C3FAFACB6849EC16043BF0AEBD4C9A6D9C9BC86
der
MD5: dc6ee2042439bda2ee5d2f4de44d98a4
SHA256: ec218d0b651209861889bdf26e904dc7526f57149564b76740e5ee1477f63a4a
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\41BDF037356776EA11D35CDCED62F2D4FF81C06B
compressed
MD5: c24e25dd2c9e1952ea1505993324f98e
SHA256: d7435bf86d20ece26837cf5c70071bd638b4358b4c0d7f3793e903f8141a763d
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C646805CE322A3EEB1716E1909454912D58EAA60
der
MD5: 5bf5da47633a6b8ca8790ecb0515aaa4
SHA256: 4bb13ab1ae69fa0d3fbc48fdce6d47e4177d3345086d07f93be9b3729c492f33
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\76E1B0E63DAD5578E1157D70E10BB1F0D1DAAAF8
binary
MD5: 71d42551c2e2576b2dc26e1e4355d7a0
SHA256: f7b1c9ec3e0ac5d26af0aa834f1b297a1ed735d990969409152c327036b1ee43
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0E9660CF4679B2E4C8C62E16750155A1C282E73D
der
MD5: 5b86e04c8aa84cecb6c7d63fc0e46fc8
SHA256: e0b76d2b3a9a2b9031821b14e8f7105c3ddd67b55aa0b28811401c84592f34c0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C627ADA1478590E215D792911A96D1A96C0072A9
compressed
MD5: 30b2f0f21d80988b13c588587095115d
SHA256: 6fa3c76b643d9ecc9ee0bbc842d09b5dd7063b7d4dcfb805959db0eb752ea62c
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.sbstore
binary
MD5: a5695cc64d77967232b0c1344c6e72b3
SHA256: 042a22b8681d754671d2018ba109b31a53ee3728d48c6379043f8e3394e7fbad
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.sbstore
binary
MD5: 65e942614eee70680464ac4be75019fc
SHA256: 34395085da32c8b4efe9959e3b0d756b43ffed17694d66f39b966cd331bd9a94
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.sbstore
binary
MD5: 95f28ede25c301301f25fbbd9a3c56ec
SHA256: 87763df78772f7d750b0fa5a31eec23e931fd3bd1cbb33beddfc61889da36478
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.sbstore
binary
MD5: 3d1ce5e50208f0cb3b979186043a548f
SHA256: 1e13d05d482c3d533dc6035af2b2d6e84749412a5748d1435b70cec8b312340b
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.sbstore
binary
MD5: 3675254e341df799d4307c1f59109185
SHA256: 23d108134bed6099793f7dd6b8b6e62081ec3b945efdbc7c5e0e779fd9b82f98
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D4311DC58EDD19033C863F2BC18A9146A55EB22E
image
MD5: 77a68563ccb1c18d8d2f662aec86145e
SHA256: c80118c00605a32793cc73471baa4a2718e169d7c866bc22d79d46379f88fa1c
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.sbstore
binary
MD5: 051fb32dece757ba112ac36dc72e3a91
SHA256: 0806d98fb3de55f75d7c0b17e26146567e08c483031526659a4a35d09b97ef19
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.sbstore
binary
MD5: e2cf527ca7550b7e7bdf7311e483a2c3
SHA256: f1e07b1d717433f47073dc54a7d98e3e87b3d0fa88e53466f93ea544af885d11
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.sbstore
binary
MD5: bdaa2a3b4259ebf8dd87e5769b1bf3f4
SHA256: 8408968dae85e51ea6b0ca7123b0ddfd7425d3013ba311bb1cbe135fff0e5bda
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.sbstore
binary
MD5: d6acf2573e12afdd7939568804d3fcc1
SHA256: 5525cbf8f8dc41d19ac632ed324e55293a510ae0eeba16d0e3f33c707aa58a0c
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.pset
binary
MD5: 956da9703243b882baee1b320e9fb606
SHA256: 45a7cfeb7304cedc0fff05247d16ea745384603e46ca63ffcb2f2603d27f26eb
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
binary
MD5: c834f081a427580ca4661f1646d92b93
SHA256: e3672be937c311b3e6a2a825f4aa0b3d7bb67f93a336874ef00a185866be1b13
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5E4954707B44E5A4B4ACF5F22B52219A1DCA477F
compressed
MD5: 045345a111b86e9c66e09ed2ef2eab37
SHA256: 361321c82de294a8edced7566bb106f2a4ab44fdcc2458b12308c7df6899fde0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.pset
binary
MD5: cd6e12988fe9f72fe4a2a529c9eb2a6d
SHA256: 835da593f7efc223e291af8eb16b99c3a1bad5a9e89f22e696ada202fb2029d4
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.metadata
binary
MD5: 09fbbf39cf99ab9c36514819b05bdbfe
SHA256: 6c2f4152ec6fe51c16b83cc39388f3f8179f592f24afcd9584760ef09a0fb496
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.pset
binary
MD5: b2a6475baaaefda29e3f21b2e51ec23e
SHA256: 2a03b353e4e8412bcf98976ae589b6af24f12ea5802252394e6345200dd0f5b2
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.metadata
binary
MD5: bb9d8f55e9156fa6ffefa41d2102d400
SHA256: fb97e6aaffb325fa27434d746372d9ecf549e59c2b0476b3da39b42435ab6d6a
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.pset
binary
MD5: 16c5aee35e9d1fd0e735cfbef142be20
SHA256: 00dce01845d833eff11f38b41499714ee6d3d1b343473c2686dc830cf5297fbe
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.metadata
binary
MD5: 578f74adf6e96eef17ba8ab4d5738408
SHA256: e9780c16075e62e66cf47594262edb17da9b3c6a1dad555a5fd1c91969c81621
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.pset
binary
MD5: be469e82d40529c40a46fe86c3e69d03
SHA256: fb21601b552cd7d9cbb8940912d2fcab1d19707b1d5b9ab0fd0199f89a64fafd
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
binary
MD5: ad03bc546b37ef44db3cfa1e00c2ea47
SHA256: 2fca11241229fd4c5948f4c25657a9bcdcdff44237d0d0450b01ed6496c769eb
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.sbstore
binary
MD5: ba0009932844173bc8f9af264229df24
SHA256: 66d1c00c04d86e313e9a02775cdf906b1be8d4cd6bef423a1b9e21cc4e9f50c1
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.sbstore
binary
MD5: 6f85bc4b2ecb49e26b0bd83a821065d0
SHA256: c0b3bc9b3dc507ab654caf72d13c3aefa58c9b13b1e4d14dd8816712d80a7e54
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.sbstore
binary
MD5: c921d8e98fa01b4f303481e112202e92
SHA256: 4ef1038730ec8bc7206713c29a936768831b922c5e6c83355fd62d7401d8c1dc
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.sbstore
binary
MD5: 04824a1f92353f43ebb9e7f74b7476fd
SHA256: b48e58ebab82e4c376f16150a3fff850c1111ff1f5985d68819cfd6f0db159d2
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.sbstore
binary
MD5: 0e8fe60ccd7e9b4c32589a5743a95302
SHA256: 2b124d4026850a3cffd28dbacb58aec28f7dcd4d40bc14e52bbe96d60ce4e749
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\47A6F0FA2D0F23467B9F9F5AF722C41B71B74E99
compressed
MD5: fccff3260043ed2718ba779edbd97193
SHA256: 00eec1478f635a8e82edd7919c1108649dc017be6de6bf7a2c803e2629f01ec2
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2E0C4058E084A83FFD5E59DF25634B4708213893
compressed
MD5: 376251186693ebdf25a7ceb25ff9e5d4
SHA256: bf474b8a09585a0283a64dbd0e0b67dd577cd0a5b9dfb0a7cc72619607537290
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0BBC7C7637CE22D83A7D79F1692355A307DC6A38
binary
MD5: a1b0951208eb6c0bbee86053277d30fc
SHA256: 883e91f19ea3bc3905a32fc734fec7717fe8011ffe593592aa01117322d3c846
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2B8B0B2F49DFC32D230A82EEE59C38BEAD0A8494
image
MD5: bc2c2a9085ffe96f925b0f63c623f36c
SHA256: 01e8bfa64be96b92bd6e5ae38d173a7f13c92271b9ed959c798fd768dbdd0461
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\35EDFBBF0184A664B1F54237A5A06B6F82546CE3
binary
MD5: 6d45de370721a3f45613b2e5de4a3686
SHA256: 12a4cbaa11a13f772d4ee33cc644621dc0d522f600e4c9826e1d594e1f290200
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E3969DE32357165E08AFC18439A78F93F6619D95
binary
MD5: dbe21515eeae784bba6c59dd54fe6c8d
SHA256: 735d7abea2c991f556d897a346ff54879e66d435a7c0600f68c7eb1a976de707
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2185460E6030252C98B5F6750D25F5C54AAE10AF
binary
MD5: d9d79a23f33f08838c001bf89bb10dde
SHA256: 7d7adb62ae0cb01e2dc072fe8a342df0f3e11f39f11968fe18bf5d551b676f38
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\68AC3AFAD32273057F367F4C10E9EF2D53C71DE0
binary
MD5: 20d7697d4ed454ddb16227b406efef68
SHA256: d913e400599e0f868ae95f7bbf9e011498f6c7463db969b6cdee8ecedb97b008
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E5DF96F0995B17C458DDEEAE10643B0167E39BF8
binary
MD5: 582d3d8d8b42cfda772aa96679b0462d
SHA256: a4c00fa6f00d2cd449cb40acf74d444443177ff9f490b1047bd678c0e028f04e
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EB5A91D33A890B2BCB4CCECAC3C94F8DD37C7822
binary
MD5: 982b1da5a84dd99e0c5716deed901974
SHA256: 70ea31bb3b7ce34b0ded6a9814061fe814188210449dc2579350c0d037630f76
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B8A524FEF2EE058AC0892A25B7DB806E608394CF
binary
MD5: b8421c537285e1743d42af47fc801694
SHA256: ffa486f759a8bb922ae4156ed2ab7e6e08cf5bb69a6e5d5e5a8575eb6ba7456f
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E941EF79CC96E9CAFE7C3300B1C9C83996111E75
html
MD5: 14e172f7b5f94dbab57de09db7e588e0
SHA256: 5e0a31257ad8780d2625aae2bd41647cd6b7cc49b9c3fd0c74c1c18699ad48f4
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A8ED7FC72BF2649E962ECB52704F94A3816B5DC4
binary
MD5: b46e4d5b25322e14f21fdeabbbf73caf
SHA256: b10f3387ebf95056072828edd7b3fe1af7a3a223edfb6b7ca075b038ac7f5ca5
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CE150544528EB3E96A4CE6F55C6B768CAC3EC82F
compressed
MD5: 3046c4fd59cf286931d5c7e465d22630
SHA256: cc1150280dac99b9b420c195370067a436537c8255ebce27bb122ce4a609b21e
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\782055FC1484235019559040CD4CDFE8B1E7BFBD
binary
MD5: 8105be008aa92609f102f2902f254b99
SHA256: a3b38059155331e6c70b09c77b0b2c09db8953f47feb68fa60c2f9dc6db33e8d
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\96435D51C4C5843ACE7E3D25AF2C161D97429AE5
compressed
MD5: 2590d3d1c892f5ae22583fa1077096e4
SHA256: 2291e79de82fc5bd5273071a5c0edd48defbb53b0d8fdfa713abc0433f631add
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9E56140816ADFB844F2627255AFC19897F8F436C
der
MD5: 97310fda2a9ab2332c8abb0522f34fd8
SHA256: bcf0144ad24d8ea84d2f9cfaaaa8c85b6a52e23e41d7b79014bd7df7c55a7d44
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0EC46F2D509B5AFA7CE7B4B98425E5CEFFB962AD
der
MD5: a3b53a90e80e26f6fcfac7c2f0af84e8
SHA256: 8b8debd4c88d854b87b9cde98c89af9a80af6499e625158c3474f5170768edfd
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D4BDD0A90087E9159FB05B852629C45462AABE57
der
MD5: abafca48b5789e0744847eb3bfc5de4f
SHA256: 8a931cbead32966c47f8e21fe033b4e3159e84278c30e721b09355a5e5b1fa15
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\523B89B7D4A0334564C8782BFCE553738A43B391
compressed
MD5: 7cc81d6ca099b8a7ec989bbd1adba8af
SHA256: 9066b167d33838093cbad2320c1f24c0a1cb50c283ee4c0effb7c0df7f5bc194
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B2A5BDEF43C5AC9EB1B8DE049ECF516416062EF8
compressed
MD5: 67bd3b386631cdb8a7d5ae5cbfa34ce6
SHA256: 5c20a84c643c364ac7a74183169fbca6e19209fd606c655a54de432ca10f8383
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7F78ECF31DE920C05FDCCD69A267CAAD7D7F8110
compressed
MD5: ce977b50d29aacbdbd97fe798e9fe8f5
SHA256: 23b5f1de668d96c3505df68f7e15b77e9bb994c9b32b052f3905792cf784c322
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6BE9EC6A4C0FB6C5835F7C182AF2108D82FC765F
compressed
MD5: b1c826bf1e4324c3237c8b87169f9486
SHA256: 862f51066a003bfba535a74fb7f91c6bc6aa584b1dd1094d04f655306e839a85
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DCA2E3C7DD06D53DEB81EDFF6B445634CDEA68EB
compressed
MD5: 1069578ca8083648a73ba4b204395980
SHA256: 04ef18f3c054b60da7fa83d5bf3c60a5c072d539f7e4bf336b1d3aaa7ebabd47
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0F330F4D1DB0F9461D35432388FE9B7D19EF7271
der
MD5: 49bf445a6a5e388aafd07077d6f825d6
SHA256: 9bdd774b6a8005787ad3a1364647f44730defb3fdc0422cb759ead7725bf309f
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A8ED7FC72BF2649E962ECB52704F94A3816B5DC4
binary
MD5: e29ac7dc3127cb80aa101f4038047003
SHA256: e71fb41c61021eaa9d670e7f4f1b14bb002f97d5fb0f824aef8a80fbcb82de6a
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EB5A91D33A890B2BCB4CCECAC3C94F8DD37C7822
binary
MD5: a4872f0d38d2fc2d982b09cf8ca04690
SHA256: 74d71f9ad17e60837d1faab9aaab6e2eaf1221a59405f1d6c1928a22274b244e
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: cce5e5abefd1ced46338df12bc72332c
SHA256: 7e06d772aa491c20ba043baf1f73f221e02bc6dc2ddeec780a51ee41339617a5
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\previous.jsonlz4
jsonlz4
MD5: e381f4a703d1e2f98bbd4060fbe31959
SHA256: 157141f9ba4e70b10098e61b24443e46d527b7e3a554971ab89a0c5ce6fb51f0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E941EF79CC96E9CAFE7C3300B1C9C83996111E75
html
MD5: c95e0993c46428e04d8563ba1e3fc80d
SHA256: 8a98b4a0d20655cf7bdea345052142c15958e8f2f9e22ffd82082e5f42875a15
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 5d25361e5bbc683d895b219bc01fe34f
SHA256: 1c82a1c60e532ebfbbf48e10a5141f43fdf67ef91f028585ebfdfb2f41c947df
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B10AAACB089CBCF9F3F1DBE5E019970B759C25A7
binary
MD5: ff3e9ef97ceca62973d02015e1c1e1ff
SHA256: a38286628e65fdc15256264b49b4f976006ef22550918dd9b298c87ffd7c91c6
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\2396
binary
MD5: 7028805e2f3052047f62e175a6f25509
SHA256: 46eccd96e45919e96822854343069fda0f7f4883c29d5a904e25bcb23fd6f678
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\01B8D28CBA5EB85C0711A62A878960954DAD1385
compressed
MD5: 24c2c13ad47d6ca19c661d6596ee93e3
SHA256: bd5893fcbd55d55487db3cbafbc283884d7c0a880543a34460e4bf9aaa01c618
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\67C0425CDFEC0CEDEEF15E828654C9E3946418DD
compressed
MD5: 62983b00b48e6f02e411f4776f5b5418
SHA256: 17287b07c9031d6e43ce771388a3e56eb94c321f93a150b439ecd1858de65ce5
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B876118CFBE2C911EE693B0F2A3ECD36A3B7ADEA
image
MD5: 9c58aba9799accdf6e62317b43d14234
SHA256: 5f4829c090d1af9d1fa62f8a95e5b94e01af654b99fc525931773a2e5735ba4d
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B694065FB266E03A9B2C4A0E892EF2B8D91DC08F
image
MD5: 8ebb1563d96fa1a695ced4386f72d8e8
SHA256: 5979464f7f8b3e0b14faa6978e3f0c9a5246556dc742c3f85add45ee59b03a3d
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B3B862A7DA6333DDA34858E1E40901357063C67C
image
MD5: 40c3194644cb79b244c9ed1909797f87
SHA256: fae31f825864ea5ab49c6002b5b3a3c7fe46bf64ebf6abc905e70ab89de8eb3f
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5B5EA7C968CB4AB881BFA1020436C2BAC4206194
image
MD5: 1d50737d3b5faece8a33df90289fb201
SHA256: c6b7831b55454b8f39819e8a7699dbeb825e7b48e954884ca53047b12f1c0f2e
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 02724560d9368d1c54a58df58190cde7
SHA256: 37f8dcd953f883c97867c3ea36e6d5ec96a80cfc51085338bd0cf952e38d33b6
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BE41A6125536421DED05AA9EA5ACAAF10785687F
compressed
MD5: 187d8cd18306ab6661f6817182360f0e
SHA256: c260527e3fa8c51a2a7b9098ef9af513dac8c31b59f41836b8f5ae7ec883d209
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\703B1764622A34D07DF61CED75071009848C0E30
woff2
MD5: 2b6817476c9d9617861da2a0691315c4
SHA256: d9b99336ea8e6f4890afd8554a4badc33d62f934f3e56b300f0849241483871e
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7895DFA9A6923BFA077068A6371F412D9698C061
compressed
MD5: 695009c2a21ba4844b77df38145ece66
SHA256: 924deb955b049aadf20d156424c8557b795e988c10af99eadb80242e0983288f
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D655F725DAF2F0F05A3C62B2B450AD1D7740B797
s
MD5: 41cd40460456f2f12675863a4c3727a7
SHA256: 50710542c7cf0b930aa702ee29b1d4e2654145ed9808e6505173bcbe2c4f19d8
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\57FBB120266DE304962F09C11C95C1C3DC55378A
compressed
MD5: 89007465d2e2b6db94516840c3c41beb
SHA256: e5da50b4df10ad69b9a960398fa964da4c94c1f50332ecb0d4b7582b82e91ddf
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\28FF9F13D8C88E1268E9FE36A34E5BEEF14CF11E
s
MD5: bbc710e20fe43f61b8178672a3937221
SHA256: 3ec87db1f040c360facdb452301db05ad0d8d605dbbc2903a844c9932833aaf3
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9D8E22798A28CF65470B1D1C95F6ED338035FAF9
der
MD5: b31fa38611bd58fa7a376fb3fe4ec9e6
SHA256: 186e3bc974e56ce919321d9729b06220b7247b50542bb0f94d415a4a75bd2a0e
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0D977DD06BB545903576779682588F84A897C384
binary
MD5: b7501ed632ce40ddd6c99d723947b34e
SHA256: e532c08c91d7f6cc84c64177f3adac0db76b8949bbadc9d6ac46f2bee132c1c5
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8CE2622B818A8A0D9382350AC6B7CD3D4074E39D
binary
MD5: 2096a7dece3ce15503015ba0f5d319bc
SHA256: 5c9ab3ebe20551d1fb1fc56603dbd883c9605c54fc37fb564c6579060291819b
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\74A826E1C8B52B05F3658F5B3AA6DB964B5A63FE
binary
MD5: 5c7ed19ed7eb997acc89ae930036b979
SHA256: 2949eb97f4488e84bc81f724feffc6749b3277984547089d35e7383bacded1bf
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\09A03E0A12BC6F8435D686E924C1AFF74118ABE4
binary
MD5: 5febe9a9679215862cc7c8486794e3f6
SHA256: 78ea2d5c530dcac1cf1a48e752981000635355852c1b44fb412231a80b50f291
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AD8DBFC0FDF7D7AB060F168AC037684DFE2C1D2A
binary
MD5: 9719fa4b55889bc2da82785dbba3c4a4
SHA256: 69e0bd5c27d21d0cfd4757c43f3ab003facad530dea71ba7565f0b76acdcf0aa
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E2FF162F2BABF921271327DE3D1779AB77E2AF3D
binary
MD5: 98969490188cbabdfa3c8a713defef38
SHA256: a30069697dd22f6ede88a6e5d8be2d01b0dd49f303e1d268c53a9e9d9d8d52eb
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\51901153B51DD6E7A872F4F61556B44523B6834F
binary
MD5: 03c2f2602ff0965c0c77fd10f26e2e3e
SHA256: cc9da7c1c3cab6c26177827175fe22d68fe05f31321a67f84ef29eee7d033e12
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5CD22957F54C9FF60C81C6A9902AA12CA93F1B0E
der
MD5: a68f0f4015a16a4875da5b378c085044
SHA256: 30d1d91780622bfa11724d4bb354183c3683482a195b82170efcdecd66b00b70
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\search.json.mozlz4
jsonlz4
MD5: 5a34b555bc99188972ca94cd2ccdd127
SHA256: 3bca12df10381d479228a3b3a27bc6cbbf3495b0959327df381d85fb595848c9
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\search.json.mozlz4.tmp
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\13D73EBE9BCDCF891A4BE9113E0B674576353810
compressed
MD5: fa91e54784d892a1df5f55e8725060d6
SHA256: 0f242622862fba15e275f606b761e1330bc5092e61cc6a591820c4adf577a33e
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\211DACEBCE79BCEA6F149A43AE79CC7C476CB859
compressed
MD5: 07208574f7ec0b69a8761624846a6652
SHA256: 076f1ad0f6990b116e3a5c76f17821854a7a2d2edd9644d025fce57f9903c1b7
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B3F5278AF9A04F90619BCE5FEFA936F2D566F949
compressed
MD5: cbdd73fefc900f6837084581f644d5c5
SHA256: 3b3493e0967cf3dd30602a56a7e8d67bb3a9e42b280e2b803865d900a0c6eb48
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\49EF2B955792B24DEB98916D50D4AA7B6F24D04D
compressed
MD5: 707f7620baff42d7edb56c67ba30f364
SHA256: 444f8da6c098ea5e69e1ce383123c643ae113584f14474ba80acf92e8e7fbaa7
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E1332CE89FF810F729589995FDB1AAE270D87119
binary
MD5: 250b462c67d2b8cd229a9c90adbcf939
SHA256: d158638011da5fcbd7dc6af95a88d1dacaa51226436daba6c9d9242ec733daf8
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\55F3A8141B0F01292545EBF09A1E053D6C64205B
binary
MD5: 3098d4ff9dd112d0d372e3cc8c1f3da5
SHA256: 4605fc4f2b1a0521bb6d2b7bd181fe449f3e4739c42746815770ed9db74a4d42
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\5860
binary
MD5: 2b47f318fdcfabf9b88818d1f266b6ca
SHA256: 552e9205f11d8bed37e6d3c068cd7393893cacae4f21d922e895fb26b3191a54
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.pset
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.sbstore
binary
MD5: d886a47c89d9c49c795da345bc236990
SHA256: a03c5e2656d2f292bf5794c8eeb8d223cd6ba4f4bfb2ed1f325460e879d0bcf7
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.sbstore
binary
MD5: cd82f4495eafe523b9b6b938c828611b
SHA256: 576a0d2c3ad8d66bb202439b18f9fd563f92d9ddd9582a3c4cce0ecafd4f0908
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FD256CF05775F09230F957B289FEBA81A7979E12
der
MD5: e6dc986f456b46d773e82b154d8bfa1d
SHA256: 0cf115c712cacc1201b5cf077d7611dec360b1016f7bbd3a7f991b0f9b323efc
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 6c89326e895f1eec5d50d585e48f1965
SHA256: 7eb31530b759b04243a4d70da19c3620467382fccf0fedb50d39755268a5eb65
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json
text
MD5: c4ab2ee59ca41b6d6a6ea911f35bdc00
SHA256: 00ad9799527c3fd21f3a85012565eae817490f3e0d417413bf9567bb5909f6a2
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json.tmp
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json
text
MD5: ea8b62857dfdbd3d0be7d7e4a954ec9a
SHA256: 792955295ae9c382986222c6731c5870bd0e921e7f7e34cc4615f5cd67f225da
2952
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cookies.sqlite-shm
––
MD5:  ––
SHA256:  ––
2952
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache-current.bin
binary
MD5: 707c12070c52e55c2a996ac15e219b95
SHA256: 6c5410c655c8efc48d123abe708c8940a4218072c0daf85e03ab45da6d2ce6b9

Find more information of the staic content and download it at the full report

Network activity

HTTP(S) requests
73
TCP/UDP connections
292
DNS requests
163
Threats
6

HTTP requests

PID Process Method HTTP Code IP URL CN Type Size Reputation
2952 firefox.exe GET 200 2.16.186.50:80 http://detectportal.firefox.com/success.txt unknown
text
whitelisted
2952 firefox.exe GET 302 187.17.123.234:80 http://alphacentauri.com.br/Producao/hhh9q-esy6y-yfovq.view/ BR
html
unknown
2952 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2952 firefox.exe GET 302 187.17.123.245:80 http://www3.xpg.com.br/404.html BR
––
––
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/saude-fitness-e-bem-estar.html BR
html
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/e71252a87b6bc1aad632e6d2d0d35dd7/attachment/css/style.css BR
text
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/7e85ca3e129fcd057043377b9ad341e4/attachment/css/resp-style.css BR
text
unknown
2952 firefox.exe GET 200 172.217.168.196:80 http://www.google.com/recaptcha/api/js/recaptcha_ajax.js US
html
whitelisted
2952 firefox.exe GET 200 216.58.205.234:80 http://fonts.googleapis.com/css?family=Fredoka+One US
text
whitelisted
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/cd9e132a93ada239d0c39f403b9d8c54/attachment/css/validation.css BR
text
unknown
2952 firefox.exe GET 200 172.217.168.196:80 http://www.google.com/recaptcha/api.js?hl=pt-BR&onload=loadRecaptcha&render=explicit US
text
whitelisted
2952 firefox.exe GET 200 172.217.21.202:80 http://ajax.googleapis.com/ajax/libs/jquery/1.7.2/jquery.min.js US
html
whitelisted
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/74448fc1d187fac4ed168bdfe5efc75c/attachment/js/jquery.form.js BR
text
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/72f522a4c77aebb03aa678eb4f541c49/attachment/js/jquery.validation.js BR
text
unknown
2952 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2952 firefox.exe GET 200 187.17.123.245:80 http://js.xpg.com.br/tag/w/25/tag.js BR
text
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/2934d29c9ade1cf5787a69f10689a21c/attachment/js/jquery.validation.messages.js BR
text
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/90126229abebd5c039273a7623f05c03/attachment/js/functions.js BR
text
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/043168a88ca62cc937270a621be7b159/attachment/js/default.js BR
text
unknown
2952 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/fafade10046cf74a54383e7a18d06a34/attachment/img/arrow-form.png BR
image
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/7b9776076d5fceef4993b55c9383dedd/attachment/img/loading.gif BR
image
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/b28f510e9769736d9a8bd106c884f6a7/attachment/img/arrow-btn-top-hover.png BR
image
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/d417e093951bd2af112894aac83f5876/attachment/background/33-1280.jpg BR
image
unknown
2952 firefox.exe GET 302 187.17.123.245:80 http://www3.xpg.com.br/cache/static/e71252a87b6bc1aad632e6d2d0d35dd7/attachment/img/arrow-btn-top.png BR
text
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/static/e71252a87b6bc1aad632e6d2d0d35dd7/attachment/img/sprite.png BR
image
unknown
2952 firefox.exe GET 200 200.147.41.244:80 http://me.jsuol.com.br/omtr/xpg.js BR
text
unknown
2952 firefox.exe GET 200 13.32.64.90:80 http://tm.jsuol.com.br/uoltm.js?id=w1gygg US
text
whitelisted
2952 firefox.exe GET 200 104.31.69.203:80 http://static.fulfilling.io/js/loader.js US
text
unknown
2952 firefox.exe GET 200 104.31.69.203:80 http://static.fulfilling.io/js/loader.js US
text
unknown
2952 firefox.exe GET 200 216.58.207.67:80 http://fonts.gstatic.com/s/fredokaone/v6/k3kUo8kEI-tA1RRcTZGmTlHGCac.woff2 US
woff2
whitelisted
2952 firefox.exe GET –– 104.31.68.203:80 http://static.fulfilling.io/.well-known/http-opportunistic US
––
––
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://categoria.saude.js.xpg.com.br/tag/w/25/banner-300x250.html BR
html
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://categoria.saude.js.xpg.com.br/tag/w/25/banner-300x250.html BR
html
unknown
2952 firefox.exe GET 200 13.32.64.90:80 http://tm.jsuol.com.br/modules/external/tailtarget/profiles.js US
text
whitelisted
2952 firefox.exe GET 200 200.147.41.244:80 http://me.jsuol.com.br/aud/grupowebforce.js BR
text
unknown
2952 firefox.exe GET 200 200.147.41.244:80 http://me.jsuol.com.br/sc/xpg.js BR
text
unknown
2952 firefox.exe GET 200 13.32.64.90:80 http://tm.jsuol.com.br/modules/external/tailtarget/t3m/TT-10162-1/CT-10.js US
text
whitelisted
2952 firefox.exe GET 200 13.32.64.229:80 http://tm.uol.com.br/h/par/xpg.js US
binary
whitelisted
2952 firefox.exe GET 200 13.32.64.229:80 http://tm.uol.com.br/b/par/xpg.js US
binary
whitelisted
2952 firefox.exe GET 200 13.32.64.229:80 http://tm.uol.com.br/h/par/xpg.js US
binary
whitelisted
2952 firefox.exe GET 200 13.32.64.229:80 http://tm.uol.com.br/b/par/xpg.js US
binary
whitelisted
2952 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2952 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2952 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2952 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/favicon/0b301084bde61d93ee2c4e3eebba0f44/228.png BR
image
unknown
2952 firefox.exe GET 200 187.17.123.245:80 http://www3.xpg.com.br/cache/favicon/0b301084bde61d93ee2c4e3eebba0f44/016.png BR
image
unknown
2952 firefox.exe GET 200 178.250.2.157:80 http://rtax.criteo.com/delivery/rta/rta.js?netId=3955&cookieName=xpg_crtg_rta&rnd=62087269469&varName=xpg_crtg_content FR
––
––
whitelisted
2952 firefox.exe GET 200 172.217.23.142:80 http://www.google-analytics.com/analytics.js US
text
whitelisted
2952 firefox.exe GET 200 216.58.208.34:80 http://www.googletagservices.com/tag/js/gpt.js US
text
whitelisted
2952 firefox.exe GET 200 13.32.64.138:80 http://tt-10162-1.seg.t.tailtarget.com/profile US
text
suspicious
2952 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2952 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2952 firefox.exe GET 301 200.147.3.199:80 http://www3.xpg.uol.com.br/ BR
html
unknown
2952 firefox.exe GET 302 172.217.23.142:80 http://www.google-analytics.com/r/collect?v=1&_v=j66&a=1036969423&t=pageview&_s=1&dl=http%3A%2F%2Fwww3.xpg.com.br%2Fsaude-fitness-e-bem-estar.html&ul=en-us&de=UTF-8&dt=XPG%20-%202019&sd=24-bit&sr=1280x720&vp=1264x585&je=0&fl=26.0%20r0&_u=YEBAAEAB~&jid=1866771498&gjid=153479526&cid=1500413628.1552574808&tid=UA-69710503-1&_gid=639872421.1552574808&_r=1&cd1=webmedia&cd2=Webmedia&cd3=Saude&z=1072701786 US
html
whitelisted
2952 firefox.exe GET 302 2.16.186.51:80 http://b.scorecardresearch.com/b?c1=2&c2=6036356&c3=&c4=&c5=&c6=&c15=&ns__t=1552574807561&ns_c=UTF-8&cv=3.1&c8=XPG%20-%202019&c7=http%3A%2F%2Fwww3.xpg.com.br%2Fsaude-fitness-e-bem-estar.html&c9= unknown
––
––
whitelisted
2952 firefox.exe GET 302 172.217.23.142:80 http://www.google-analytics.com/r/collect?v=1&_v=j66&a=1036969423&t=pageview&_s=1&dl=http%3A%2F%2Fwww3.xpg.com.br%2Fsaude-fitness-e-bem-estar.html&ul=en-us&de=UTF-8&dt=XPG%20-%202019&sd=24-bit&sr=1280x720&vp=1264x585&je=0&fl=26.0%20r0&_u=6GDAAEAB~&jid=1387771420&gjid=1006733713&cid=1500413628.1552574808&tid=UA-96351493-44&_gid=639872421.1552574808&_r=1&cd1=Parceiros&cd2=Grupo%20Webforce&cd3=XPG&cd11=normal&cd4=1500413628.1552574808&cd66=1552574807562.cx9wprnc&z=574365187 US
html
whitelisted
2952 firefox.exe GET 204 2.16.186.51:80 http://b.scorecardresearch.com/b2?c1=2&c2=6036356&c3=&c4=&c5=&c6=&c15=&ns__t=1552574807561&ns_c=UTF-8&cv=3.1&c8=XPG%20-%202019&c7=http%3A%2F%2Fwww3.xpg.com.br%2Fsaude-fitness-e-bem-estar.html&c9= unknown
––
––
whitelisted
2952 firefox.exe POST 200 216.58.205.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2952 firefox.exe GET 200 172.217.16.161:80 http://tpc.googlesyndication.com/safeframe/1-0-32/html/container.html US
html
whitelisted
2952 firefox.exe GET 302 187.17.123.245:80 http://www3.xpg.com.br/ BR
image
unknown
2952 firefox.exe GET –– 187.17.123.245:80 http://www3.xpg.com.br/carros-motos-e-automobilismo.html BR
––
––
unknown
2952 firefox.exe GET 200 200.147.99.193:80 http://tracker.bt.uol.com.br/partner?source=tagmanager BR
––
––
unknown
2952 firefox.exe GET 200 13.32.64.138:80 http://d.tailtarget.com/conversion.js US
text
malicious
2952 firefox.exe GET 200 13.32.64.138:80 http://d.tailtarget.com/base.js US
text
malicious
2952 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
–– –– GET 200 13.32.64.195:80 http://b.t.tailtarget.com/u?env=_ttq_tt_uol US
text
suspicious
–– –– GET 200 13.32.64.195:80 http://b.t.tailtarget.com/b?tA=TT-10162-1&tY=1&tS=3&tU=6F0B000A58698A5CC8414A9602065942&tX=b.50&tZ=841590379&env=_ttq_tt_uol US
text
suspicious
2952 firefox.exe GET 200 13.32.64.138:80 http://tt-10162-1.seg.t.tailtarget.com/ca?tZ=742953055&env=_ttq_tt_uol US
text
suspicious
2952 firefox.exe GET 200 13.32.64.49:80 http://t.tailtarget.com/__tt.gif?tA=TT-10162-1&tE=0&tF=&tI=_baar_zug_ch_1552574819424_2281701526&tJ=&tU=6F0B000A58698A5CC8414A9602065942&tX=b.50&tY=1&tZ=796598679 US
image
suspicious
2952 firefox.exe POST 200 93.184.220.29:80 http://status.geotrust.com/ US
binary
der
whitelisted
2952 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted

Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID Process IP ASN CN Reputation
2952 firefox.exe 2.16.186.50:80 Akamai International B.V. –– whitelisted
2952 firefox.exe 34.213.175.109:443 Amazon.com, Inc. US unknown
2952 firefox.exe 187.17.123.234:80 Universo Online S.A. BR unknown
2952 firefox.exe 54.149.115.79:443 Amazon.com, Inc. US unknown
2952 firefox.exe 93.184.220.29:80 MCI Communications Services, Inc. d/b/a Verizon Business US whitelisted
2952 firefox.exe 187.17.123.245:80 Universo Online S.A. BR unknown
2952 firefox.exe 216.58.205.234:80 Google Inc. US whitelisted
2952 firefox.exe 172.217.168.196:80 Google Inc. US whitelisted
2952 firefox.exe 172.217.21.202:80 Google Inc. US whitelisted
2952 firefox.exe 216.58.207.42:443 Google Inc. US whitelisted
2952 firefox.exe 216.58.205.227:80 Google Inc. US whitelisted
2952 firefox.exe 172.217.23.163:443 Google Inc. US whitelisted
2952 firefox.exe 200.147.41.244:80 Universo Online S.A. BR unknown
2952 firefox.exe 13.32.64.90:80 Amazon.com, Inc. US unknown
2952 firefox.exe 104.31.69.203:80 Cloudflare Inc US unknown
2952 firefox.exe 216.58.207.67:80 Google Inc. US whitelisted
2952 firefox.exe 104.31.68.203:80 Cloudflare Inc US unknown
2952 firefox.exe 104.31.69.203:443 Cloudflare Inc US unknown
2952 firefox.exe 104.27.150.254:443 Cloudflare Inc US unknown
2952 firefox.exe 104.31.68.203:443 Cloudflare Inc US unknown
2952 firefox.exe 13.32.64.229:443 Amazon.com, Inc. US unknown
2952 firefox.exe 13.32.64.229:80 Amazon.com, Inc. US unknown
2952 firefox.exe 172.217.23.142:443 Google Inc. US whitelisted
2952 firefox.exe 172.217.21.200:443 Google Inc. US whitelisted
2952 firefox.exe 178.250.2.157:80 Criteo SA FR unknown
2952 firefox.exe 216.58.208.34:80 Google Inc. US whitelisted
2952 firefox.exe 172.217.23.142:80 Google Inc. US whitelisted
2952 firefox.exe 13.32.64.90:443 Amazon.com, Inc. US unknown
2952 firefox.exe 172.217.18.98:443 Google Inc. US whitelisted
2952 firefox.exe 172.217.16.162:443 Google Inc. US whitelisted
2952 firefox.exe 13.32.64.138:80 Amazon.com, Inc. US unknown
2952 firefox.exe 74.125.140.156:443 Google Inc. US whitelisted
2952 firefox.exe 200.147.3.199:80 Universo Online S.A. BR unknown
2952 firefox.exe 2.16.186.51:80 Akamai International B.V. –– whitelisted
2952 firefox.exe 216.58.206.2:443 Google Inc. US whitelisted
2952 firefox.exe 172.217.168.196:443 Google Inc. US whitelisted
2952 firefox.exe 172.217.16.161:80 Google Inc. US whitelisted
2952 firefox.exe 200.147.99.193:80 Universo Online S.A. BR unknown
2952 firefox.exe 52.89.170.53:443 Amazon.com, Inc. US unknown
–– –– 13.32.64.195:80 Amazon.com, Inc. US unknown
2952 firefox.exe 13.32.64.49:80 Amazon.com, Inc. US unknown
2952 firefox.exe 200.147.4.47:443 Universo Online S.A. BR unknown
2952 firefox.exe 13.32.143.176:443 Amazon.com, Inc. US unknown
2952 firefox.exe 13.32.64.124:443 Amazon.com, Inc. US unknown
2952 firefox.exe 104.27.90.106:443 Cloudflare Inc US unknown
2952 firefox.exe 104.27.91.106:443 Cloudflare Inc US unknown
2952 firefox.exe 172.217.18.174:443 Google Inc. US whitelisted
2952 firefox.exe 216.58.207.67:443 Google Inc. US whitelisted
2952 firefox.exe 34.252.164.43:443 Amazon.com, Inc. IE unknown
2952 firefox.exe 172.217.16.173:443 Google Inc. US whitelisted
–– –– 200.147.4.47:443 Universo Online S.A. BR unknown

DNS requests

Domain IP Reputation
alphacentauri.com.br 187.17.123.234
unknown
detectportal.firefox.com 2.16.186.50
2.16.186.112
whitelisted
a1089.dscd.akamai.net 2.16.186.112
2.16.186.50
whitelisted
search.services.mozilla.com 34.213.175.109
52.88.150.81
35.166.112.39
whitelisted
search.r53-2.services.mozilla.com 35.166.112.39
52.88.150.81
34.213.175.109
whitelisted
tiles.services.mozilla.com 54.149.115.79
35.160.41.125
52.43.40.243
34.208.7.98
34.214.20.242
34.216.156.21
52.43.91.152
34.218.217.119
whitelisted
tiles.r53-2.services.mozilla.com 34.218.217.119
52.43.91.152
34.216.156.21
34.214.20.242
34.208.7.98
52.43.40.243
35.160.41.125
54.149.115.79
whitelisted
ocsp.digicert.com 93.184.220.29
whitelisted
cs9.wac.phicdn.net 93.184.220.29
whitelisted
www3.xpg.com.br 187.17.123.245
unknown
x-cache.xpg.com.br 187.17.123.245
unknown
fonts.googleapis.com 216.58.205.234
whitelisted
ajax.googleapis.com 172.217.21.202
216.58.205.234
172.217.22.10
172.217.23.138
216.58.206.10
216.58.207.42
172.217.16.170
172.217.16.138
172.217.22.74
172.217.22.106
216.58.210.10
172.217.18.106
172.217.23.170
whitelisted
googleadapis.l.google.com 216.58.205.234
whitelisted
www.google.com 172.217.168.196
whitelisted
googleapis.l.google.com 172.217.23.170
172.217.18.106
216.58.210.10
172.217.22.106
172.217.22.74
172.217.16.138
172.217.16.170
216.58.207.42
216.58.206.10
172.217.23.138
172.217.22.10
216.58.205.234
172.217.21.202
whitelisted
safebrowsing.googleapis.com 216.58.207.42
whitelisted
js.xpg.com.br 187.17.123.245
unknown
ocsp.pki.goog 216.58.205.227
whitelisted
pki-goog.l.google.com 216.58.205.227
whitelisted
www.gstatic.com 172.217.23.163
whitelisted
me.jsuol.com.br 200.147.41.244
unknown
static.fulfilling.io 104.31.69.203
104.31.68.203
unknown
rtax.criteo.com 178.250.2.157
whitelisted
tm.jsuol.com.br 13.32.64.90
13.32.64.226
13.32.64.174
13.32.64.251
whitelisted
www.googletagservices.com 216.58.208.34
whitelisted
www.google-analytics.com 172.217.23.142
whitelisted
categoria.saude.js.xpg.com.br 187.17.123.245
unknown
d2j6syf6c0cltf.cloudfront.net 13.32.64.251
13.32.64.174
13.32.64.226
13.32.64.90
unknown
jsuol.com.br No response unknown
pagead46.l.doubleclick.net 216.58.208.34
whitelisted
fonts.gstatic.com 216.58.207.67
whitelisted
www-google-analytics.l.google.com 172.217.23.142
whitelisted
gstaticadssl.l.google.com No response whitelisted
api.fulfilling.io 104.31.68.203
104.31.69.203
unknown
ga.ffid.io 104.27.150.254
104.27.151.254
unknown
tm.uol.com.br 13.32.64.229
13.32.64.20
13.32.64.156
13.32.64.253
whitelisted
dpit8l7f4al18.cloudfront.net 13.32.64.253
13.32.64.156
13.32.64.20
13.32.64.229
unknown
www.googletagmanager.com 172.217.21.200
whitelisted
www-googletagmanager.l.google.com 172.217.21.200
whitelisted
tt-10162-1.seg.t.tailtarget.com 13.32.64.138
13.32.64.73
13.32.64.49
13.32.64.195
suspicious
adservice.google.ch 172.217.18.98
whitelisted
b.scorecardresearch.com 2.16.186.51
2.16.186.80
whitelisted
www3.xpg.uol.com.br 200.147.3.199
200.147.35.224
200.147.100.53
unknown
adservice.google.com 172.217.16.162
whitelisted
securepubads.g.doubleclick.net 216.58.206.2
whitelisted
partnerad.l.doubleclick.net 216.58.206.2
whitelisted
a1294.w20.akamai.net 2.16.186.80
2.16.186.51
whitelisted
stats.g.doubleclick.net 74.125.140.156
74.125.140.157
74.125.140.155
74.125.140.154
whitelisted
stats.l.doubleclick.net 74.125.140.154
74.125.140.155
74.125.140.157
74.125.140.156
whitelisted
amazonas.uol.com.br 200.147.100.53
200.147.35.224
200.147.3.199
unknown
tpc.googlesyndication.com 172.217.16.161
whitelisted
pagead-googlehosted.l.google.com 172.217.16.161
whitelisted
www.google.ch 172.217.23.163
whitelisted
tracker.bt.uol.com.br 200.147.99.193
unknown
d.tailtarget.com 13.32.64.138
13.32.64.73
13.32.64.195
13.32.64.49
malicious
shavar.services.mozilla.com 52.89.170.53
52.34.90.23
52.33.113.226
34.211.202.13
54.187.144.104
54.200.76.177
whitelisted
shavar.prod.mozaws.net 54.200.76.177
54.187.144.104
34.211.202.13
52.33.113.226
52.34.90.23
52.89.170.53
whitelisted
superjogosclick.xpg.uol.com.br 200.147.3.199
200.147.100.53
200.147.35.224
unknown
www.bpg.com.br 187.17.123.247
unknown
www.3por4.com.br 187.17.123.137
unknown
xpg.uol.com.br 200.147.36.53
unknown
faq.xpg.com.br 187.17.123.245
unknown
salsa.uol.com.br No response unknown
b.t.tailtarget.com 13.32.64.195
13.32.64.49
13.32.64.138
13.32.64.73
suspicious
t.tailtarget.com 13.32.64.49
13.32.64.73
13.32.64.138
13.32.64.195
suspicious
l.ffid.io 104.27.150.254
104.27.151.254
unknown
123i.uol.com.br 200.147.4.47
whitelisted
snippets.cdn.mozilla.net 13.32.143.176
whitelisted
drcwo519tnci7.cloudfront.net No response whitelisted
status.geotrust.com 93.184.220.29
whitelisted
tracking-protection.cdn.mozilla.net 13.32.64.124
13.32.64.64
13.32.64.25
13.32.64.229
whitelisted
d1zkz3k4cclnv6.cloudfront.net No response whitelisted
mapa.123i.com.br 104.27.90.106
104.27.91.106
unknown
cdn.123i.com.br 104.27.91.106
104.27.90.106
unknown
apis.google.com 172.217.18.174
whitelisted
plus.l.google.com 172.217.18.174
whitelisted
location.services.mozilla.com 34.252.164.43
34.251.59.153
52.18.148.152
whitelisted
locprod1-elb-eu-west-1.prod.mozaws.net No response whitelisted
connect.facebook.net 31.13.90.6
whitelisted
scontent.xx.fbcdn.net 31.13.90.6
whitelisted
accounts.google.com 172.217.16.173
whitelisted
ssl.gstatic.com 216.58.207.67
whitelisted

Threats

PID Process Class Message
2952 firefox.exe Misc activity SUSPICIOUS [PTsecurity] JS obfuscation (obfuscator.io)
2952 firefox.exe Misc activity SUSPICIOUS [PTsecurity] Redirection JScript Obfuscated (seen Banload)
2952 firefox.exe Misc activity SUSPICIOUS [PTsecurity] JS obfuscation (obfuscator.io)
2952 firefox.exe Misc activity SUSPICIOUS [PTsecurity] Redirection JScript Obfuscated (seen Banload)
2952 firefox.exe Generic Protocol Command Decode SURICATA STREAM excessive retransmissions
2952 firefox.exe Generic Protocol Command Decode SURICATA STREAM excessive retransmissions

Debug output strings

No debug info.