General Info

URL

https://wetransfer.com/downloads/043327d4ad92b07a9c11f2ecc4e4cd5a20190109021114/ef3fb1227bb7fa9308d1609dd31cc1e3201934221114/d2e15b

Full analysis
https://app.any.run/tasks/19f84261-8177-4b8b-8d69-00de9eeebccf
Verdict
Malicious activity
Analysis date
1/11/2019, 14:27:44
OS:
Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distored by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.

Software environment set and analysis options

Launch configuration

Task duration
120 seconds
Additional time used
60 seconds
Fakenet option
off
Heavy Evaision option
off
MITM proxy
off
Route via Tor
off
Network geolocation
off
Privacy
Public submission
Autoconfirmation of UAC
off

Software preset

  • Internet Explorer 8.0.7601.17514
  • Adobe Acrobat Reader DC MUI (15.023.20070)
  • Adobe Flash Player 26 ActiveX (26.0.0.131)
  • Adobe Flash Player 26 NPAPI (26.0.0.131)
  • Adobe Flash Player 26 PPAPI (26.0.0.131)
  • Adobe Refresh Manager (1.8.0)
  • CCleaner (5.35)
  • FileZilla Client 3.36.0 (3.36.0)
  • Google Chrome (68.0.3440.106)
  • Google Update Helper (1.3.33.17)
  • Java 8 Update 92 (8.0.920.14)
  • Java Auto Updater (2.8.92.14)
  • Microsoft .NET Framework 4.6.1 (4.6.01055)
  • Microsoft Office Access MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Access Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Excel MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office OneNote MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Outlook MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office PowerPoint MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Professional 2010 (14.0.6029.1000)
  • Microsoft Office Proof (English) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (French) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (Spanish) 2010 (14.0.6029.1000)
  • Microsoft Office Proofing (English) 2010 (14.0.6029.1000)
  • Microsoft Office Publisher MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Shared MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Shared Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Single Image 2010 (14.0.6029.1000)
  • Microsoft Office Word MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (9.0.30729.6161)
  • Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (10.0.40219)
  • Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (12.0.30501.0)
  • Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (14.15.26706.0)
  • Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706 (14.15.26706)
  • Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706 (14.15.26706)
  • Mozilla Firefox 61.0.2 (x86 en-US) (61.0.2)
  • Notepad++ (32-bit x86) (7.5.1)
  • Opera 12.15 (12.15.1748)
  • Skype version 8.29 (8.29)
  • VLC media player (2.2.6)
  • WinRAR 5.60 (32-bit) (5.60.0)

Hotfixes

  • Client LanguagePack Package
  • Client Refresh LanguagePack Package
  • CodecPack Basic Package
  • Foundation Package
  • IE Troubleshooters Package
  • InternetExplorer Optional Package
  • KB2534111
  • KB2999226
  • KB976902
  • LocalPack AU Package
  • LocalPack CA Package
  • LocalPack GB Package
  • LocalPack US Package
  • LocalPack ZA Package
  • ProfessionalEdition
  • UltimateEdition

Behavior activities

MALICIOUS SUSPICIOUS INFO

No malicious indicators.

No suspicious indicators.

Reads CPU info
  • firefox.exe (PID: 2680)
  • firefox.exe (PID: 3648)
  • firefox.exe (PID: 2464)
  • firefox.exe (PID: 3004)
Writes to a desktop.ini file (may be used to cloak folders)
  • firefox.exe (PID: 2680)
Application launched itself
  • firefox.exe (PID: 3004)
Creates files in the user directory
  • firefox.exe (PID: 3004)

Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report

Screenshots

Processes

Total processes
35
Monitored processes
4
Malicious processes
0
Suspicious processes
0

Behavior graph

+
start firefox.exe firefox.exe firefox.exe firefox.exe
Specs description
Program did not start
Integrity level elevation
Task сontains an error or was rebooted
Process has crashed
Task contains several apps running
Executable file was dropped
Debug information is available
Process was injected
Network attacks were detected
Application downloaded the executable file
Actions similar to stealing personal data
Behavior similar to exploiting the vulnerability
Inspected object has sucpicious PE structure
File is detected by antivirus software
CPU overrun
RAM overrun
Process starts the services
Process was added to the startup
Behavior similar to spam
Low-level access to the HDD
Probably Tor was used
System was rebooted
Connects to the network
Known threat

Process information

Click at the process to see the details.

PID
3004
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" https://wetransfer.com/downloads/043327d4ad92b07a9c11f2ecc4e4cd5a20190109021114/ef3fb1227bb7fa9308d1609dd31cc1e3201934221114/d2e15b
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
––
User
admin
Integrity Level
MEDIUM
Version:
Company
Mozilla Corporation
Description
Firefox
Version
61.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\kbdus.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wbemcomn.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\profapi.dll
c:\windows\system32\wpc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\mscms.dll
c:\windows\system32\winsta.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\program files\mozilla firefox\softokn3.dll
c:\windows\system32\sspicli.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\progra~1\mozill~1\nssckbi.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\explorerframe.dll
c:\windows\system32\duser.dll
c:\windows\system32\dui70.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\fwpuclnt.dll
c:\program files\adobe\acrobat reader dc\reader\acrord32.exe
c:\windows\system32\dhcpcsvc6.dll
c:\program files\mozilla firefox\mozavutil.dll
c:\program files\mozilla firefox\mozavcodec.dll
c:\windows\system32\mfplat.dll
c:\windows\system32\mf.dll
c:\windows\system32\atl.dll
c:\windows\system32\ksuser.dll
c:\windows\system32\dxva2.dll
c:\windows\system32\evr.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\msmpeg2adec.dll
c:\windows\system32\slc.dll
c:\windows\system32\msmpeg2vdec.dll
c:\windows\system32\sqmapi.dll
c:\windows\system32\bcrypt.dll

PID
2680
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="3004.0.1912493366\281993157" -childID 1 -isForBrowser -prefsHandle 1420 -prefsLen 8310 -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 3004 "\\.\pipe\gecko-crash-server-pipe.3004" 704 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
61.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll

PID
3648
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="3004.6.1035454872\1876964700" -childID 2 -isForBrowser -prefsHandle 2516 -prefsLen 11442 -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 3004 "\\.\pipe\gecko-crash-server-pipe.3004" 2540 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
61.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll

PID
2464
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="3004.12.1637329513\454577977" -childID 3 -isForBrowser -prefsHandle 2404 -prefsLen 12017 -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 3004 "\\.\pipe\gecko-crash-server-pipe.3004" 3120 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
61.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\wship6.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll

Registry activity

Total events
374
Read events
372
Write events
2
Delete events
0

Modification events

PID
Process
Operation
Key
Name
Value
3004
firefox.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
3004
firefox.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
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

Files activity

Executable files
0
Suspicious files
110
Text files
53
Unknown types
82

Dropped files

PID
Process
Filename
Type
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 2cdffbdfdb20b07635bf1eb08d370a81
SHA256: 4f73b1b60d78da1157d9d6a1a3bc1f46c6f9fea79a378f7c05040257700925ed
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\074C65E2011B9E005EA7EC0D76F669E46E09BA4D
compressed
MD5: 17174d2fc618085bf64b55a207d3711c
SHA256: e5e02ffa067219515c51f39f2d90ac1d3613d8797e52ecda08418ddfefe88bd7
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4.tmp
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1DE57006FE47C0A2B6E84D49F111D67C71685207
image
MD5: 39ca54a3bc32aa46f97a1d1029db820f
SHA256: dfe6e8bfa578617b9ec4224ba308d2ec848720a2cd98164a029bd5ab7024703e
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D35FDA7834D92B4F2713683B995EDE83EFC40C7B
image
MD5: 5ec13edaa6abcdf0712df65a16d13398
SHA256: 5011092fe6c01df54bc146d5163e460d2f70065c2ded568359a6b3f50a0f192e
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6C1A11F011FEBF6098929E43D8901055B16444D5
woff
MD5: 927a6e24a83ee422da7b90f84cbc5820
SHA256: 42b813780961fc3eabf567207566219425c301d440e0431913276dfdf9414742
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7F75DE01C40015B4382B216DEA1A4976198CCC70
woff
MD5: 94e3a31d630d90aa4f9a21a9dc0d62bc
SHA256: 6b4957093d9559bece7a1d08f8b6442e1b0d6dc3b53c905ff55637a085d2812c
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F2A84161E696F7DFBB4419D5F7EDF5C78BE53548
image
MD5: c54da52508f9d1eaaf346b82d773f990
SHA256: 8ff5fa6e43bae133ec904746b76498ea2470a2eb29702e9a6114bcb5b9b84f32
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6C4944490A5171ED26DFDB59D7BB308B408CC7CE
compressed
MD5: a52b10ce2703bc78d050aafb5c2b05d7
SHA256: 87181544cd0726ff16fa0edd54059a7af822fca050d7a409212c58032f235d13
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7A52B40FBD24E4B7D17D54DB08B07B6275C0E6DB
compressed
MD5: 803db6b0092d3dd18462adebb835f7d3
SHA256: 0926beaad39f29f6b539778a9de308a2574fc51e756546bf3e22606cbfbf8a80
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EB9A56E156AE59BC26D7591BEA421AE51D5DF7B2
compressed
MD5: cacfca9752eb9ff0e87faab3c2522777
SHA256: 0338adec0b7787a953f1a2a308bd7ae0f8293a3b81c88b17468ce5c987b30ad7
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F2C5AE982E2ABDC8CA511A8F83AAD16D615AD261
binary
MD5: 0d25aa0d1f44ebc383c62c24a7117f7d
SHA256: 0068e52a0004ff58af9cbd3a7728fbdcc3e4e95b8cf02ff87deeb15ed1a720c8
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0867CC4406AA80EB93A2501F8067E2DD905C05EB
binary
MD5: 4cdcb3ef3faeab994ed49e5903340cf2
SHA256: 1d8211c20bf8e698458e54bc3b2ff310decf399166b66353332d92fba9d46794
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B6BACF5E8511F21500308683A86B7756CA3A90D9
compressed
MD5: 3125df25247af965259addf51b8b1fab
SHA256: b74d16b626f92404b8647e6e75cad8d6f48bf6cc2719489c6e558ceb140da149
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2085131E802D2A251A4947893E5AE5427548E031
compressed
MD5: 0a61310f9f312a0b288626f36239d3a0
SHA256: c61b04c5e7e5db2fc3f107a83430d0e6887167b95bb26cbf6c457df5aba797f3
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D8DD537B13B1BEB2037AB40D636C1BCD061C5049
binary
MD5: e029f0a1c7ed5939d15e185bf4830a4c
SHA256: 5aa6805bd9db66ea066a5d136902aa148bbe8386cceac423b3d1c678d559e8c1
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\567C5DDF3A6E8FE4F4AADCEC808315F4CED68E4A
compressed
MD5: 8b9133eee705f9993985409a3ae056c0
SHA256: 8851efa576ccf7c6539648fcb65dd74cc630b2a3ec0b4372dd1698147f2648e6
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: cc936e7e6456303422c9b13f86aa6b07
SHA256: 4da8afffbd3d98bd9032830f9620ec971c188682e0af3036f679d1ec37a9de7b
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs-1.js
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3345959086bslnoocdkdlaiFs2t%s.sqlite
sqlite
MD5: cfbd58d625d80d01043c78da60a3c0fd
SHA256: 43dfd78be764f1ff61db403cf08e4d56af8168bd220e20a795fc8d5ad90d2877
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3345959086bslnoocdkdlaiFs2t%s.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3345959086bslnoocdkdlaiFs2t%s.sqlite-wal
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\727688008bsleotcakcliifsittsr%.sqlite
sqlite
MD5: 4a0ebc1ff4ac3d546ed2a684cf4dc934
SHA256: 7b72c39a4fd0ccff1045a9b8f4404ea8d77cffab70d7f5100942b5a58e45a290
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\727688008bsleotcakcliifsittsr%.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\727688008bsleotcakcliifsittsr%.sqlite-wal
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1059394878bslnoicgkullipsFt2s%.sqlite
sqlite
MD5: 570edce7e005988a4d42bdc571a342dd
SHA256: 44c68dc486693feffafc2009d48403b36b95aaa1693d6c0807f94206924e4597
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1059394878bslnoicgkullipsFt2s%.sqlite-wal
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1059394878bslnoicgkullipsFt2s%.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1725441852bxlfogcFk2l%isst.sqlite
sqlite
MD5: 77d671e5ddc6ac496bc334fcf2baa2e6
SHA256: 6098472f0f1c9f5eebc21791a14fec3370c024e9f47e31db4737371e2bf2d020
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1725441852bxlfogcFk2l%isst.sqlite-wal
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\about+newtab\idb\3312185054sbndi_pspte.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\idb\12183338011.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1725441852bxlfogcFk2l%isst.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\about+home\idb\3312185054sbndi_pspte.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3899588440psinninpiFn2g%.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 844cdc852bb12d44f11d253956c2e0f4
SHA256: 24bed4b06f6116592328423980957647392213c85e0ba93caecbbc6fb84afa2d
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\startupCache.4.little
compressed
MD5: c5f353170b8c23e4959e621f7d2472c2
SHA256: aa5785d3a156738cbb32fc26edf2abef8362a2088e8ba0e1dc8b9f700858e4ec
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: acd2757660cf98898dc02effb063de13
SHA256: e19d5c47cb9ac46c899c947ad4914c01d5a44963c7df0392c8915cdc23b6fd36
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 30fc3ba093c2f1a6cc95a69491627b79
SHA256: d08f5fb4ee4fb93cc9f7cfa35cdd903b068320b0567fa58cdec484d37cf2c331
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2B3936232A5BEFC6FB212BF90384A2E663805615
compressed
MD5: b507de59bd9d8828acc9cfa82b64931c
SHA256: e0b8472f11afa4eb6d63b02d18f5520f041edc663b4470b52268dca633b8b596
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\508A2A3DAE094548861EE567C1448C73E0D78250
binary
MD5: ce8d605aa4bb299567281b4a618a0f62
SHA256: ca8b5a2f8f377a8e767f40f41476a10e2102020037994db80ed1393561b17bbe
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\54E06BC7B511A06D6D8C8A723CCA58A4C958DC12
binary
MD5: bbbb424899737b388c272a517923d41d
SHA256: 1d129f009a003bc5adaf811bff6339f51bf02623eae984efd5f1504f518cc6fa
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\06DABF4E26A1778D09C277344B2DD2AEEB29B49D
image
MD5: f84827c41e781f7dbac340cf0077ee67
SHA256: 3c6279a73ce36ccf5d016df2e47cdb301b5edc9c62e3054a2419a98f18c3f336
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5AEEAEDE48723A205659C6CDA4069B37118CD1A1
html
MD5: a3112294df3dd2c1e8b99173424d46fe
SHA256: 7bcc545c35ae203d7f18cb7a42f7176882700aea410ffb641a322111bb893f8e
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C1B0383777A6721B33807C94D8F858C696332ADC
compressed
MD5: 254a7f72f8fb7ac154be812ab38fb25d
SHA256: 33400d12b64f95dc6400260f595e4d5c0563de5898d20f9eaf2a384b415ac663
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0867CC4406AA80EB93A2501F8067E2DD905C05EB
binary
MD5: c09585930c01e1db2999be36c30e4377
SHA256: f20650d1fbd5ad777b3af685447e94e294bad3cddb6963e2f15c64aad22413fb
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F3F0F831FEFB90022EF42B21B2AE72632BBCA5E6
compressed
MD5: affa8da9ff34113fcfaea98509a9ec48
SHA256: 2d70c39eb5fff2a4fccc4d4179976ab583aa1a4a86deaaaa50d91c2e7d291a66
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EB9A56E156AE59BC26D7591BEA421AE51D5DF7B2
compressed
MD5: 378e9c65cd669508819535f8e481cb7f
SHA256: b995375289bc863a5449d83fe4aafd4e0c71597ad6eeb3ef2bc2a9cceee93294
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B6BACF5E8511F21500308683A86B7756CA3A90D9
compressed
MD5: e1998ca2e4030aa3de3260c6e14da560
SHA256: e4caff4919ec67b06f3067eef6055f314887e1a31d7c910e3dd5f8172ca773a1
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2085131E802D2A251A4947893E5AE5427548E031
compressed
MD5: db89b772bdd9be16cc49e852c1c2001b
SHA256: 3213b4d8b660b7d1a61b6fecf20c37968fe656f8a35cf8d5754b7a90e2d2531c
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D8DD537B13B1BEB2037AB40D636C1BCD061C5049
binary
MD5: 76b9532da34e900e80012f37998984b5
SHA256: 60982ff75642c4fb63502e7897d776759321ef634f8b3b2af93e487078e2a62c
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F2C5AE982E2ABDC8CA511A8F83AAD16D615AD261
binary
MD5: cfe03506475671137cdb19acda416df3
SHA256: 50c451bfe619ad8812a2a96586c7719c6e02acec492ad4750f115a3e8e0b0642
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2B3936232A5BEFC6FB212BF90384A2E663805615
compressed
MD5: 84cf1c99640d6d3c6890f689e0717cf2
SHA256: 932268b5b27dc5ae5aae08e926f17f74ebb64b6d17b8fdac8e669d0ab973a0a0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A631C92ED4BBE507173CA1444DB73F47FCAF4905
compressed
MD5: cdc6affbc56d5271aace0ed39fbee53a
SHA256: b990700c960e52254867a6467482eadb76381949b5315105286da97394be0ff7
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\11BC760A912B5F038B4A98520D088F8B2E310534
image
MD5: e6f595f0c7b64cafb486ace3c563c68e
SHA256: cd09128fe6d13ae1963c728686f882d8b51b61a1dfb93461f2dd1d43eaa44649
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\aborted-session-ping
text
MD5: 9124d335a7cc40e0155888d555a8247a
SHA256: a9233f58f031036882408a78392f886c861d225cd0c21ad259f4d398878818b9
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\aborted-session-ping.tmp
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\session-state.json
text
MD5: 234f105b2d332e1d3674ea4799d98d13
SHA256: c491ab20334ac995484305ae15f40c8d2b80c0a0bc100a023a473826ad1c86f8
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\session-state.json.tmp
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\crashes\store.json.mozlz4
jsonlz4
MD5: a6338865eb252d0ef8fcf11fa9af3f0d
SHA256: 078648c042b9b08483ce246b7f01371072541a2e90d1beb0c8009a6118cbd965
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\crashes\store.json.mozlz4.tmp
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 3500e93458b3bb4f187d1ecec07562fc
SHA256: 4865e083acde739c2101ad1a11580b0acda46ce9c849df17f49650cbb9a8e4d2
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\94BC582FB372F8E406716011EC296579E337607A
der
MD5: 6c7e608031907795d58c7c4218bc9c70
SHA256: eef17ceeb1f213a0ef81c88b2ca0a9e709e9754d13b6b203e15456cf182c0927
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\508A2A3DAE094548861EE567C1448C73E0D78250
binary
MD5: 06b1a32e710f94289fd708b95f8719fb
SHA256: e0a086919cf40e1380b8e1c15132298a5fc38ccde40d4bf13368def0fc56f660
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2B3936232A5BEFC6FB212BF90384A2E663805615
compressed
MD5: eb1e3452dec8304d2a61c0e072f437f2
SHA256: 899706a99e920e76f5c08e0bbb05ffab7595cd29d2dec944ecb55a2b3e464d4c
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\48288CC649B0ED37577A86808AB9BCA6D4011980
image
MD5: 903d53462b0f3ce926d1c2dacdeb3da6
SHA256: bf5bf094b029f4e5cb7bcc1396152523857eb15c1701d2c0003690afdb007c64
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2B3936232A5BEFC6FB212BF90384A2E663805615
compressed
MD5: 03cb78a44d98a8f20f553e174176941c
SHA256: 0337d03beb93be90c13a5b27459d41547d664b12fa68334aede1d63bf8ac1c9f
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\508A2A3DAE094548861EE567C1448C73E0D78250
binary
MD5: 959550b2092145c89c9cad73cf85d934
SHA256: a2775ab26b95976e2a6293f2d36a0138d1e9961e7ec27905e90f4724d6a49892
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 58485495f8bf50c3a1ef5a019650f437
SHA256: bf7c195588e3b0370bd2661070891ad3909cfce39e4e5a3f07fde94150537a40
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 30fc3ba093c2f1a6cc95a69491627b79
SHA256: d08f5fb4ee4fb93cc9f7cfa35cdd903b068320b0567fa58cdec484d37cf2c331
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\41CDA52E9D85EE7B21CDD797AA2BBE93355CF36A
image
MD5: b1b4328d6ba6d9f474705bf34153db7f
SHA256: 74fbe86fb773d6fe566aef53c4a1d3daab23962325108b23924629286ddf0af8
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 12d179f8c6c4d055ba4e3ab813299017
SHA256: f4687fc8287d1e451fc2b81a0595e4fe37db7dbfe39a7577d14da68378d30af9
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 7c45520ce9284fcabc8e20281ce99bdf
SHA256: 91708e3decf13b3213c2de025c9b7af0bf86d556d0085affc2d79d7e30059bc2
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\xulstore.json
text
MD5: 120b885c3becc77ebf6b7d377e5e867c
SHA256: cd256c79351140a6e27ef0373e120f245d07b189130ebf40baf4d3859897780d
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\xulstore.json.tmp
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2B3936232A5BEFC6FB212BF90384A2E663805615
compressed
MD5: 16341fd47a78d3827c0e6f80887e5bce
SHA256: 0ba4a9148a89ad142ba54a6d019e96c7eabf1a2f94dd01dc1ba2a294eb691f59
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\508A2A3DAE094548861EE567C1448C73E0D78250
binary
MD5: 455a9f18a8ef7e97722ee76bb0418e28
SHA256: 394b0a2f0b648f23cb6897f627afe45d90d1c8787aa5177a3a08aebee83be21d
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\54E06BC7B511A06D6D8C8A723CCA58A4C958DC12
binary
MD5: e45f43fd3f5005d237ac8d2d73fe649e
SHA256: 63d6f8d621293bd7063d2bd7a893f006c841dc1e6e5e9bb95f9f10b4fc0d47aa
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\.metadata-v2
binary
MD5: dd66a60d970493db0897dfbae81859c1
SHA256: bfaade7ef25445eb6f0eb141511664b2e8488fb8e3df3ba21d726125bb0fe8fe
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\idb\12183338011.sqlite
sqlite
MD5: 0a441411c994f70550bb9b9e21c26c0b
SHA256: ff640a6c03827df86c4efc1ac54025db632323b799f98c1c5012559542608a1a
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\idb\12183338011.sqlite-wal
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E0C6069C28D093BEF73ECA028AFB982E6C55E148
image
MD5: 50e1dbeb6cc7609abe933199208fd98f
SHA256: 3ee25c6de2906f5db2d8ad2d8f648ea5f54387d0b1017505eab5195dd795b523
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 58485495f8bf50c3a1ef5a019650f437
SHA256: bf7c195588e3b0370bd2661070891ad3909cfce39e4e5a3f07fde94150537a40
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: cdd2814a8fcb1b9324e5d9d20ccffc9e
SHA256: b5f26c850ef5c5bf450489ef898865e975417d0763fac012198eb95d7466dd42
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\508A2A3DAE094548861EE567C1448C73E0D78250
binary
MD5: 6e673cacdd59c85971acaa123d772872
SHA256: 566ff13b6e6cff293a7035a9818f508338496090e3703e9a4ec5861c99d33111
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\54E06BC7B511A06D6D8C8A723CCA58A4C958DC12
binary
MD5: 8a7287ee682f6e0c67487831076990a5
SHA256: 49feb6c33def120f570f1a19cbe18a4a6b34e4f9bb4764136ae1289b24847134
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A7EF8AE888B1DF7F9A899251C225D5B46FB4C3E7
binary
MD5: f02edcfe23ecbf4bc1974bb35e6f73c8
SHA256: c3a8360f73ee6454ac2ffb73bce2fb926c9eeba67d4df884a141eb74dd2d86a6
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2B3936232A5BEFC6FB212BF90384A2E663805615
compressed
MD5: b0ca70b80fa377e6c46ddc794e491a7f
SHA256: 25fe016cebb0aa12cf2346e1c60eecac37106dcd1c6011f0bf4d8a0dd5da2399
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5AEEAEDE48723A205659C6CDA4069B37118CD1A1
html
MD5: 895ed685e53479fa74b5022b0e5ad8b6
SHA256: 04a2abe1768f4a6c6100d9a2c98dc27ade3c73839c208dd4b6ed73e6f1cb3cdd
2680
firefox.exe
C:\Users\admin\AppData\LocalLow\Mozilla\Temp-{ce348e4c-7d33-445e-89f9-60108c51bcaf}\Temporary Internet Files\Content.IE5\index.dat
dat
MD5: 9b9c592adb6bbbe6267bc92fb1615799
SHA256: 65444e5225091a71d53509476ba9d761a9378127c117199e8be6ba5bb65c5f64
2680
firefox.exe
C:\Users\admin\AppData\LocalLow\Mozilla\Temp-{ce348e4c-7d33-445e-89f9-60108c51bcaf}\History\History.IE5\index.dat
dat
MD5: d7a950fefd60dbaa01df2d85fefb3862
SHA256: 75d0b1743f61b76a35b1fedd32378837805de58d79fa950cb6e8164bfa72073a
2680
firefox.exe
C:\Users\admin\AppData\LocalLow\Mozilla\Temp-{ce348e4c-7d33-445e-89f9-60108c51bcaf}\Cookies\index.dat
dat
MD5: d7a950fefd60dbaa01df2d85fefb3862
SHA256: 75d0b1743f61b76a35b1fedd32378837805de58d79fa950cb6e8164bfa72073a
2680
firefox.exe
C:\Users\admin\AppData\LocalLow\Mozilla\Temp-{ce348e4c-7d33-445e-89f9-60108c51bcaf}\History\History.IE5\desktop.ini
ini
MD5: ba96961f5e22882527919e19daea510f
SHA256: dace5ad59099429d8aed4ee279f1263efb65d64456931398465a396cf0e79bd7
2680
firefox.exe
C:\Users\admin\AppData\LocalLow\Mozilla\Temp-{ce348e4c-7d33-445e-89f9-60108c51bcaf}\Temporary Internet Files\Content.IE5\ZW7L1KXF\desktop.ini
ini
MD5: 4a3deb274bb5f0212c2419d3d8d08612
SHA256: 2842973d15a14323e08598be1dfb87e54bf88a76be8c7bc94c56b079446edf38
2680
firefox.exe
C:\Users\admin\AppData\LocalLow\Mozilla\Temp-{ce348e4c-7d33-445e-89f9-60108c51bcaf}\Temporary Internet Files\Content.IE5\FPYR94E3\desktop.ini
ini
MD5: 4a3deb274bb5f0212c2419d3d8d08612
SHA256: 2842973d15a14323e08598be1dfb87e54bf88a76be8c7bc94c56b079446edf38
2680
firefox.exe
C:\Users\admin\AppData\LocalLow\Mozilla\Temp-{ce348e4c-7d33-445e-89f9-60108c51bcaf}\Temporary Internet Files\Content.IE5\IJ44MEOD\desktop.ini
ini
MD5: 4a3deb274bb5f0212c2419d3d8d08612
SHA256: 2842973d15a14323e08598be1dfb87e54bf88a76be8c7bc94c56b079446edf38
2680
firefox.exe
C:\Users\admin\AppData\LocalLow\Mozilla\Temp-{ce348e4c-7d33-445e-89f9-60108c51bcaf}\Temporary Internet Files\Content.IE5\EJKZVO7N\desktop.ini
ini
MD5: 4a3deb274bb5f0212c2419d3d8d08612
SHA256: 2842973d15a14323e08598be1dfb87e54bf88a76be8c7bc94c56b079446edf38
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9AC4314E7044ABDE1AE89DB0BEAD9D4925177342
compressed
MD5: 0c304c4719ceb3b4327a93c81b9051a3
SHA256: d0ca29a79ebbe42717b4cf3c098f984d740287f3f6d835eb4671e6f3e41dd7d2
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\984BF4554A7CD5E280BC6D83CB79B6C03AC7C2AA
image
MD5: 33fd97ec3ed5af826201e0c2be3306fc
SHA256: 8dd6f443cf1f88335a015549ed07afd4dc3da45c051110127f2bb7b6ad06593d
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2FCDE245C8B9704D96A7C5C9D79BD05FDD8EBBB8
compressed
MD5: 8576c5d38b140b1ab7f378f67d72a2c6
SHA256: 743b048aea0764a6562a29133de3f37ce7ff25563a78a89e8ecb3f93e7c3eebd
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AE78E16960D64CE358FFF500A58800484CFB17F4
image
MD5: bad6c020929a7607e3a67d29d09908a7
SHA256: ad80a9aa29b54af8df7004e7518ac80e9359a249f9497ff0570c08eb43520125
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C40905FB55B638034E67EE57F0224A30485601A9
image
MD5: 9e491586b51b23d4bee32e39f12abe66
SHA256: bf5f764c3da1897fe6dd6804181bf8a547442cd42fd903b641359042f9a649d1
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\10661
compressed
MD5: 9c8e007f4840525f471b1e2466a3fbb7
SHA256: 3137487386f88d2faa1932e235cd6af18334365b4fab6cb01128698ea5464a86
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8976A7ED93822135899F73BA139630B536410560
der
MD5: 997be51b7126a6c40d6cc5d252d65fda
SHA256: 635c974d5414e422fdec2c7de47e8869c81246f9626fb24281485125a996905c
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2FCDE245C8B9704D96A7C5C9D79BD05FDD8EBBB8
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C3FD35AB900B244AD78798A12E373799D31788CB
image
MD5: a32af192dac9aea06d21763130b336b8
SHA256: 595546245429b70d9341c22d59a7f39e3e55636b839b262109818c5c32df845e
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3BAAA33D73CBE1D07EFCC36F2870376F4E007D7C
image
MD5: 6f0009593b4b8846795c3e69b420d215
SHA256: a33be921f7da27690953737fa344ce48043a831d9394504e96588f8ecdd54ee0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\698B98389031C989CEAED5059152765E0065BA87
image
MD5: 1624e92568881d04665c2fddcee5fc91
SHA256: 375c5672c97803f0eb0fc830d268c413cea85da868d38889be5ac13faa540afd
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E89B045DCE43C45FF8C380DA4912D37AF3562C63
image
MD5: de487b84c66b845c3f518c4883bcff07
SHA256: 9b7c0a8af2b13bba01fac2a506406a08f6eeb0b021d774b4b0fb11c8709e5329
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CA122638D0994A4DAC0EE9B6339833699CF180C4
image
MD5: bf059a98338eabfe22434c93fcf8b395
SHA256: 07170b6bfa98846df772c96f151e7ca01fd701552fd6bab6a9f2077d22920672
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\28BE80904CC55D511FDDCD76E6CAECD0611D0CC7
image
MD5: 45a4099f20436d36e82b0e1925ceb010
SHA256: d8cdd9d6aada032648bab945c89801fccdf341f6a833b1207a97702c154aba6d
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\043A10721FE9A1980EA3D4FD8C9103EC1D4A4BC3
image
MD5: 9a9795008e6039e8d08cc9cb980511da
SHA256: 171a4482f3b6e4f3c096fc040b1393a0d52e6edc91b9336ec4f5d72296f82331
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0845CD7261B184C7C41FBB30533374AF585358D3
woff
MD5: d25dc95ddaeeeb99a18b39478cce18a3
SHA256: 6c513ffbb80d2be3920009fcd5e4db5535d97e9ef770cdcb42e731a1832415e9
2680
firefox.exe
C:\Users\admin\AppData\LocalLow\Mozilla\Temp-{ce348e4c-7d33-445e-89f9-60108c51bcaf}\Temporary Internet Files\Content.IE5\desktop.ini
ini
MD5: 4a3deb274bb5f0212c2419d3d8d08612
SHA256: 2842973d15a14323e08598be1dfb87e54bf88a76be8c7bc94c56b079446edf38
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\67FBA648429603393A1F9E95DE31CD2B286FC89B
binary
MD5: 730439afba1fd64f6a985aa557f622ab
SHA256: ce93334b09115ed0737c3638efab2f74c8e9e01cc821e0dd1a19e54f8d8d1dbb
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\29DA3740BA81424C7A0F756F58441473A91C77F0
image
MD5: bc215872b9590a0b68f82662a236c52f
SHA256: 03875c4ac4e7895e2f7eaf8621dc40141fca4af5c726463c60974e57a52c4066
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\idb\12183338011.sqlite
sqlite
MD5: ca60e304dd4eb6dc63ea74aa9511d311
SHA256: 8f6473327b13443aa99605338bca30881b4b48c18e29ac186ebb164350a61178
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\idb\12183338011.sqlite-wal
binary
MD5: a3ec70506e2b9cb1ab31b6760f6b96ca
SHA256: 732908634bf5c34fbf391429dfecc0772da9b825cbf2af0bc686c46f2e460253
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\idb\12183338011.sqlite-shm
binary
MD5: b28d28e7849977f34f7901729f0b3a9c
SHA256: 4e6cda457e8b5afea6de86f185f672d1995dec6dbce72ebc58afb8b58a9623a1
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\idb\12183338011.sqlite-journal
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\.metadata-v2
binary
MD5: c5aaeb090440966ba8d06096891e84a6
SHA256: 320b2991bcae44db17da46e2bfa729d5517e1a41c0ef419b780e1157917b0bfb
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\.metadata
binary
MD5: 133c379869608034c8aa2947c893dc55
SHA256: 95648b2ed9be1473f6fa3e112096ca7adce3a3941a0f65b457534dddf66ff862
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\.metadata-v2-tmp
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\https+++backgrounds.wetransfer.net\.metadata-tmp
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8BA80AF7AAF5EE3B32043F5F84224D9291F80F33
image
MD5: 114c92f3c06cb540b463791a3ba539e5
SHA256: 06ce129ce6769d9e65cd4bfe6b38182b92615a72a8db54564cc68f15b4c28f1c
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1A66F2C8BF03C802FAC49F431BE41E30C661C1B8
image
MD5: 9679986553d18a8cf851a9b99659219d
SHA256: 4b0a822da02343d8c86c74742d9ef3b7d7f7c3aea08285e5d97fa8c425853115
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3359A664608E4D7FB284360BC597AF0344E6ADA1
image
MD5: 659d28b78e69a7e79a7e85480adc9f0f
SHA256: aa668402574ff232a3632f744e898d16ab33b90bd1658d53fb4d58cd61072e60
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5CFCF36E5AEE09BA8279C40F9504447A5696C68E
compressed
MD5: 57faca322480e6dbaae5de3ad4052e62
SHA256: ffc36fc4372e1a6083ef077252f31d0ccc0218d18f843476a16ab4642e20a531
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6D37B97D77341D1842A8C6A421738353EA97D7C5
image
MD5: 14a8f41e7522b65e25a4289c8da4ccc4
SHA256: d4765895ea6c7a64e64000b87654113172ccddd4136ada623b1283d80907e72f
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EF0EFE05BCAE80BFBF6192069017648C11F670FC
txt
MD5: 49a1f4b4a38bfff895c169239495388f
SHA256: bc8ce762cf6a054d953321b187362cbe82f1329173d73200aa573deb613aba27
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CA47584D51C49E60AC58816F763FB2336EEC7E3D
image
MD5: de770de361eb4a99464f85d067570785
SHA256: d9b9bc6dc6ed97ab193b7519e24daf5136a91b78764726c7864b097c29c8825a
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D8B30E3D57F471A4B4B7CB34F06F7E015C93972B
compressed
MD5: e073f498fa51363f27150c1f4e904e16
SHA256: d1501c8ef134376f0951de12257c60d23a2c88adea372db945d1610dfa0ff9b1
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BECE096662A13097CCFAD89134EDE18AAD165F00
binary
MD5: 43a5ec9880f854f134f7eca7e90ac638
SHA256: fb920c817b3943ba93b1307478ca63a5bb62de2e8d8687140cb1f4efb8be10a1
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BFE8514D72F076972819F7F0F2A9CFD42BEB2C79
der
MD5: cead28f6f93c5d68172bf685f9ae36a9
SHA256: ddeebf84c5362169cab459955366962a170971a671b77ad22e28bab17ffde35e
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E3401C26F862CC9671BFC58FFC052FB944537CCC
compressed
MD5: 0a45a301d008680e5b06036cd224b475
SHA256: c6b9489fa5424944c8050786b9c85c15c07f18b83efdb6f9bb11d280e49fdd83
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: db14a959a204fdc3799e2258f95258fe
SHA256: 51277cd8808e2275df0801d02f0467327102da35c9885f71a18ef41cfb8b855f
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db-journal
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0DDE71383D6347B401121138BB75ED029918A605
binary
MD5: 0b8ce6213bc92ffdbbcd6460272d56b2
SHA256: 22d884b20c6b3054d2a42e33ca692146ee2ebe1166578d6642f42d35d162bf88
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\ED519539DAD43D3B53DA521CF52A30348296E899
der
MD5: 0a7be4acf486637f7f6e9e757c348c91
SHA256: 54a62a66b1e870fa3efbfc08505c53dc3d2661280a094beb024650aada295a1f
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\59609AAD891F4334A96AD147FD7DBFE62AEC1662
compressed
MD5: 79269729c53b288903dcd5999f179b6c
SHA256: f1b916401a537be736894ba4f453af46325e9d5320549b4a0d7360df287f0ff0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C1B0383777A6721B33807C94D8F858C696332ADC
compressed
MD5: cb7cf839a9a38a5ee672dbad04778061
SHA256: abc1915096e0f71e65881eb0cae69707a4efe1f95ac64376e450ea31273dae5f
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\95B22C45C2A806441C9E15BEEF8763445307527D
image
MD5: 6d28421cab302bb5be222d0bddb154c0
SHA256: 458f6c1fcb485df3e9a53657acc8c43fae2f021407fd0dc3302c6d479141df17
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D0790DFD38A4435C9555F17C7419EB4AED93C0F2
image
MD5: 7e966d626194dda4b7ecdd33420b0a5f
SHA256: 6d297603bca75123762180642945873139b7c2d546a03d180f9c80862bc0f32e
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D8DD537B13B1BEB2037AB40D636C1BCD061C5049
binary
MD5: 043d39b108da9632158fc19cffd39243
SHA256: 428b7f0f76620a8d67dd430865b39002b607bba08199d2b49c2b90cea7550f40
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F7E0F82141631089A99F669C754FB38C0DD1E1C1
woff
MD5: 7cb8d481c2a18aaf2eb1630b81413ae2
SHA256: e4a53af2a16b6cf33f37e7f2ba1d215963c08e6097b2a16f9815297476a1fe8e
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9B2BF3AABDEF664E53A95A4B9F450269C6C33FA
woff
MD5: f91da36dd3809b45662f79ea7172c93e
SHA256: a50af1929986e54fb4b31d61fcb9a8e43bcb59c1514cfc6c5d62667a61649c0b
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1156ECB8817FC1E0541DB8F1C32743A03E0143D2
image
MD5: c5e4d75691b469a4ecb9a1eed283d36c
SHA256: b69e31a48ecaa4209419f781abfe26ec9f3c50a6239316e935dca3b9d1ac3333
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0867CC4406AA80EB93A2501F8067E2DD905C05EB
binary
MD5: 12182f878aeb4dd47e749fcdee352dda
SHA256: 0b0c27bee3773244f39ded5d704a57da34a2cd91067101883e51c9872feb9baf
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B6BACF5E8511F21500308683A86B7756CA3A90D9
compressed
MD5: 8c27f454d3986ac8b5b759a985ea4a4a
SHA256: 80b48bd9c04e83d27284cf9ff8122068fe0c154b8c0b70d3c2456f126d254750
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CA80989BF565D04A2B79081F22D33A3D517E8DA2
der
MD5: 3d1e8e319cb1b9863c8d0d75828d0827
SHA256: 0889c3b0062e614cf4f67388fd81be9a189571bc94c47191dc9fdd64763436ff
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EB9A56E156AE59BC26D7591BEA421AE51D5DF7B2
compressed
MD5: 2fecb106fc413dd13b3e963a3c3196bb
SHA256: 6ddc8e0825699bd3930110e9d2ed6ed6c7ecef842879b6ed15f2757f5abc3aec
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F3F0F831FEFB90022EF42B21B2AE72632BBCA5E6
compressed
MD5: 8f9023c3a2e5e1654f6913a38bc4cb5a
SHA256: 4752fac697b9b1287cce7c59f370b39c4011ef3920e794088cc4ee433369e860
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2085131E802D2A251A4947893E5AE5427548E031
compressed
MD5: 700e3216287ca7c922aa2a2482ed581e
SHA256: 841e48989aa52d7adbc3540d8fd8f34fd73dd3b7ce9ccd5dcfab702f82fbc3b0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F2C5AE982E2ABDC8CA511A8F83AAD16D615AD261
binary
MD5: 42760a2e5506cda2f466d3ade705b1a1
SHA256: 33a430945f26d8c87b851d1ef1728a2f838a406ef9cf966104e5073067e4d57d
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2B3936232A5BEFC6FB212BF90384A2E663805615
compressed
MD5: 2c6b3bb648e1c678cc7258a455bde7db
SHA256: 0bb3bca63de9452dd62a12d90de05660172a0bbc00dbe9af5af3c29ae05289de
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\815B0A00A28495F85ADECF37529977BCEBEF4BF9
der
MD5: 22200c800e41f9217543e064c3b62d75
SHA256: 7102677d426636973acd92f17a2cf1c9022ce0145c5a0ab6182ec4e0a600426f
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: acd2757660cf98898dc02effb063de13
SHA256: e19d5c47cb9ac46c899c947ad4914c01d5a44963c7df0392c8915cdc23b6fd36
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5E4954707B44E5A4B4ACF5F22B52219A1DCA477F
compressed
MD5: f09d18401708844faf7fbbe026de90b0
SHA256: 9a8b9ae08f74e50f03ad5a2ef34ee7aa06b06e2250a97e86893a26f9e1a69b7f
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5AEEAEDE48723A205659C6CDA4069B37118CD1A1
html
MD5: 3594bb4016a27f6a737fa0a8d98a9581
SHA256: 29f4cf18e480d5eeb3fa3998da351473fe07cc3c59484bbc9b86360810efbdb4
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DC48A68A74C5097AF4960CD982B5993CE40DFC86
compressed
MD5: f60533a239d7803989bafa6bb9648995
SHA256: 788a1dbfd13191b1ce1b169d48773295e05ab3710176b21dda6bf3a57ccb6465
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\5002
compressed
MD5: d7dd495e1607909a298890042ebb9583
SHA256: 2b74d6f33094c650c25c9d953aaa3fe947e8b3524a92fde39dd7eba370683a2f
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child.bin
binary
MD5: 80de548f95577dcccec981bfe9935dfc
SHA256: 7763711bf56a122d450611a71333241e9a9406f377a8071119a912e844afe745
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child-new.bin
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache.bin
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-new.bin
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache.bin
binary
MD5: 67879185cb8ff991c7be60c732127151
SHA256: c4a34ef9a02bcc6fe70d6519b41528d0da5f32613b5fb339583a8abc09837acf
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache-new.bin
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 9a7df0f932e9698cce6a1c6f8eae075d
SHA256: b0b01f4256bd290f8abcc175e80324c60ebf9c5ca541aaae654268b7dd6e2d40
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-backup
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256-1.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256-1.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.metadata
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.metadata
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.metadata
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.pset
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: de3b0cb019cd1f21f5c44eae1a17028a
SHA256: 3c4c047151d96645dfd3494fc41fb2f91ded829da9da730c5e52ab69a55aa7de
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9FA1E96A6A6867B6F3209B22FB0216D9F05376C4
der
MD5: 1e24de73c0c53639cf91d5b566e1a6c9
SHA256: 2efcafbe58814a0317dcaac0c9a7e465c0cf490d3106cf536ba1c7d8b0a10339
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\54E06BC7B511A06D6D8C8A723CCA58A4C958DC12
binary
MD5: 9c408b2f0fe6a7b19672868b66a82d96
SHA256: 87587449bbce64ebd867ab0b0549eb99bfbfb190d69fd1d3cb0237ade9951586
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 62c47865a6bd0ba341edd37295b5910c
SHA256: 9759067a756956b7303fb6b4b43f66f4b07c853edd3dadb7ddc6211245bac978
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A0C3003260B776E3D9A44264E2105E8347D0E489
der
MD5: d3fc665f10976d3939f577874515c29a
SHA256: e4b9fa4addb736eadad6d58d65263177868c3cdf5efe277e925e74851f45490a
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A5C55CE8630E48AFE101C2889E94C22C97CC5EFC
der
MD5: de316d2de5d7c49420aef3790c5f1d9e
SHA256: e834a17a889e443aecf9e0f9475bdcca1f2c8638830f073045cc775fe00c57a7
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: cdd2814a8fcb1b9324e5d9d20ccffc9e
SHA256: b5f26c850ef5c5bf450489ef898865e975417d0763fac012198eb95d7466dd42
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\previous.jsonlz4
jsonlz4
MD5: e381f4a703d1e2f98bbd4060fbe31959
SHA256: 157141f9ba4e70b10098e61b24443e46d527b7e3a554971ab89a0c5ce6fb51f0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D12383DA99D296E2DE11539E8510C5E742935FBE
image
MD5: e3b559aaa9e33ea0cd20e76b833073b7
SHA256: acfe72c5338da3064102db34e4a1ae74d76760b857b09656c58c16c95ba198ff
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\56C4B31E35556665ADCD5E69C06FDACC94953EAE
der
MD5: b886a32b6ca73ae0bb32f7f13622ec89
SHA256: 7f88399c035a91b8004b2ae10885ca2d0ca5ebcfab0a80776111a312ce09a799
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DC48A68A74C5097AF4960CD982B5993CE40DFC86
compressed
MD5: d7dd495e1607909a298890042ebb9583
SHA256: 2b74d6f33094c650c25c9d953aaa3fe947e8b3524a92fde39dd7eba370683a2f
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4A9C9560AFBA845E244E6588C3692BDCCC4A655F
der
MD5: 13150532bbc048e232876dacbbf99ba1
SHA256: 44ddb3dc3874a8c2643ad2df44e7a105da89517f9351e872c88d682af04fde70
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 58ec2d8a674a9785f030a11b995ae137
SHA256: 5b40a126c6a762392a8c6bbdbfdd3f55629482e1a30ca5e10c7b6777a06a91e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4E1E5ED48B1B609D4F770EC6AB8AD3B3B1ED5565
der
MD5: 903ec87abfedcf71c40e33cd7896afc9
SHA256: bb2f820a748378a2ffd00ebb6b859f3866eb4786f0671462043d16f0d7239f03
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3F7111E9D39E28B4CA7FE6E71399ACF5540A81EB
woff
MD5: 4c022329b3367967a38675ca9512d58b
SHA256: 8a83eed602ebb7ba23f69359f25f889f2cca93fe5d59b250dcc2228eba237881
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EAD7487A2125EAEBBA1B43AE1F6AD2CF9CA3635A
image
MD5: fd1763327f7c27730ae10870fed7ba50
SHA256: e4cad8156140043a9ea3b07985a33837a0b785fc979a17000ee02b54f2c46aff
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\341CC474BDCC2851C412B8FEBCD42E1884D6669A
woff
MD5: 1ad0d9a3398d44bc728825eb6d346511
SHA256: 24158d14721d4edadc2d9c6282179ced5d7e0798386513a47ba751b802f49419
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\09E3B8B3AF51E168CC846F4931A5BB54B38E39C6
woff
MD5: 857612711efbd672a3e9adfeda6e161a
SHA256: f7837fd20afe56d4c397566430b8b4d5c54eac233e1605713d1fa0624e2ed801
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\69E8C4474C421D07298A2DF8962F94E375926346
woff
MD5: adce327562e5711d35028501e7714bdf
SHA256: 37d9dd6230fbcd218ab07ef6f315d760dabd8a0e0c2b43ed582c387c16034d0c
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\952F11EEC9E78FB143DE537700510750F4EA2AE5
compressed
MD5: cd64ab1c51bfeb88983574a08780e95e
SHA256: 526a22f8338a56907607887a53674819b0e178e515d41b398349f3afdc0f97f9
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\search.json.mozlz4
jsonlz4
MD5: 209dca49b0b0aed3f89cbcdfc995251d
SHA256: 5e2adfe141fdcdc784f1cd6c9df377dd06743818911c5d5fcce6b6022d6e8ed8
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\search.json.mozlz4.tmp
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E9CC07CEB3298E651530F52B22B801E898188009
der
MD5: d794dcffea7519035373a2b78ad9c9f4
SHA256: 935c9d5420e9a376f98e4b13288f0bc4196a47357e861969732cd3177794a008
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2BD395F0CEC9A6B7B29335B4E2ED4F7057AE1E5E
compressed
MD5: 130a0fd53ba7b6e59b23664ff745e80a
SHA256: 1ca03f40c6bae030ab558c94fb412f9b7c4ccd8ec8bfbd1e3d53668dc0fc52d4
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7162FAB3B17D966D5B81E5E3895F1DC822611B0F
image
MD5: 7a124f02da0e4d1a10c2263955e89b45
SHA256: 5d28a1f4a9f7e52ed683f3ccd66e39d3382dbef6d7f0a71d4bc74590b2fa71b8
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\18D6D94D22CA6EE48D5B0D2D969D04D4AE7FB5C1
compressed
MD5: b9cc502c77fc42e8b120f2f68a0c2ef2
SHA256: f646b118a7da51a1b468f5604f8c97476c949db3185f7e844dee33de45c30d7c
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0F1CCAB3E4D42BBA3487FBC74CDDC91EEB9019BB
compressed
MD5: cfb0ea9679d17da90d0ca821e48f4df7
SHA256: 12243de174f120187d86cb85b7b02319cfe68f3d4d62f1e145d6d75cd2990eb3
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F30BDF24775E7850128454AAE7627F5564E01E1A
compressed
MD5: ea364d7a54c882229b84e3f1ec1ff2a9
SHA256: 2427e3f240623a097b68a646b5dda5aeeaa2ff6b6e634114e2f3bec131fcbcbf
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: d9292145dca06989631f3c16a795c3cd
SHA256: 2d2d17b45db86321ad56d69650d7c27a70aed79368594b18b8428ed4afcadc55
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.sbstore
binary
MD5: e2cf527ca7550b7e7bdf7311e483a2c3
SHA256: f1e07b1d717433f47073dc54a7d98e3e87b3d0fa88e53466f93ea544af885d11
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B5A9A6AF0AD53E60C358192C1DD6F5753EE3E11D
binary
MD5: 714c4f25280fa03488bdd3be5e237414
SHA256: 509941549c522da11595f464c642ac333dc6d8a37bf870896d806ac567d98544
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.sbstore
binary
MD5: 65e942614eee70680464ac4be75019fc
SHA256: 34395085da32c8b4efe9959e3b0d756b43ffed17694d66f39b966cd331bd9a94
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7BDDD2F35E9878321CE52772AEC83CA02419C129
der
MD5: b6394c243f83fb02de8283dbfb013810
SHA256: f12ca9d8b7ec045e438c260adcc7238ea78c3c595f77c69ee6b8ca20db02ac02
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.sbstore
binary
MD5: 95f28ede25c301301f25fbbd9a3c56ec
SHA256: 87763df78772f7d750b0fa5a31eec23e931fd3bd1cbb33beddfc61889da36478
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.sbstore
binary
MD5: a5695cc64d77967232b0c1344c6e72b3
SHA256: 042a22b8681d754671d2018ba109b31a53ee3728d48c6379043f8e3394e7fbad
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.sbstore
binary
MD5: 051fb32dece757ba112ac36dc72e3a91
SHA256: 0806d98fb3de55f75d7c0b17e26146567e08c483031526659a4a35d09b97ef19
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.sbstore
binary
MD5: 3d1ce5e50208f0cb3b979186043a548f
SHA256: 1e13d05d482c3d533dc6035af2b2d6e84749412a5748d1435b70cec8b312340b
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.sbstore
binary
MD5: 3675254e341df799d4307c1f59109185
SHA256: 23d108134bed6099793f7dd6b8b6e62081ec3b945efdbc7c5e0e779fd9b82f98
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\89241FF1A35A9B537CE1FC40DA2F33130FFD8560
compressed
MD5: ad6a1f6bd3b1d838ce0c97e7fc3b08d2
SHA256: 2e275884c625273098e888c5069bae9a70f56d7dc4e67242271b410152cb7125
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5E9DD51A3F020A664394324C8578631AA49AA9C4
s
MD5: df99a64a3b496c7d541db2b94429bc8b
SHA256: bf91848264d9f10f7c88f169c3f2f911e3c39b387dd17b0a9a3187913f1dc456
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8042CE48790387D357B74D9E3A6128E69ADBEF4F
der
MD5: 69bed9b7efdcd4c4a06a7e733b56bc12
SHA256: c3b936d3b285c8ad25ee0cec78b900ae568c5910e2afebd3d4bc831fc81957c2
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\91905136E84AEDCA043ACF974C8A827988D67189
compressed
MD5: 4caffebadbd68d3d340af11445f6ac5d
SHA256: 2a1f1202bf45cc2484fb2c44471f2faa3e972025e387dcf52f8cde68ba45a1b0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.sbstore
binary
MD5: bdaa2a3b4259ebf8dd87e5769b1bf3f4
SHA256: 8408968dae85e51ea6b0ca7123b0ddfd7425d3013ba311bb1cbe135fff0e5bda
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\55F3A8141B0F01292545EBF09A1E053D6C64205B
binary
MD5: 23a20340fa801581bf7f9a28f534e50c
SHA256: e0ba31a690ecaecb13e8ba217743609359ee758a885d82a12363c098cfcbbb98
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.sbstore
binary
MD5: d6acf2573e12afdd7939568804d3fcc1
SHA256: 5525cbf8f8dc41d19ac632ed324e55293a510ae0eeba16d0e3f33c707aa58a0c
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
binary
MD5: c834f081a427580ca4661f1646d92b93
SHA256: e3672be937c311b3e6a2a825f4aa0b3d7bb67f93a336874ef00a185866be1b13
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.pset
binary
MD5: 956da9703243b882baee1b320e9fb606
SHA256: 45a7cfeb7304cedc0fff05247d16ea745384603e46ca63ffcb2f2603d27f26eb
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.pset
binary
MD5: cd6e12988fe9f72fe4a2a529c9eb2a6d
SHA256: 835da593f7efc223e291af8eb16b99c3a1bad5a9e89f22e696ada202fb2029d4
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.metadata
binary
MD5: 09fbbf39cf99ab9c36514819b05bdbfe
SHA256: 6c2f4152ec6fe51c16b83cc39388f3f8179f592f24afcd9584760ef09a0fb496
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.metadata
binary
MD5: bb9d8f55e9156fa6ffefa41d2102d400
SHA256: fb97e6aaffb325fa27434d746372d9ecf549e59c2b0476b3da39b42435ab6d6a
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.pset
binary
MD5: b2a6475baaaefda29e3f21b2e51ec23e
SHA256: 2a03b353e4e8412bcf98976ae589b6af24f12ea5802252394e6345200dd0f5b2
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.pset
binary
MD5: 16c5aee35e9d1fd0e735cfbef142be20
SHA256: 00dce01845d833eff11f38b41499714ee6d3d1b343473c2686dc830cf5297fbe
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\32301
binary
MD5: 2b47f318fdcfabf9b88818d1f266b6ca
SHA256: 552e9205f11d8bed37e6d3c068cd7393893cacae4f21d922e895fb26b3191a54
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.metadata
binary
MD5: 578f74adf6e96eef17ba8ab4d5738408
SHA256: e9780c16075e62e66cf47594262edb17da9b3c6a1dad555a5fd1c91969c81621
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.pset
binary
MD5: be469e82d40529c40a46fe86c3e69d03
SHA256: fb21601b552cd7d9cbb8940912d2fcab1d19707b1d5b9ab0fd0199f89a64fafd
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
binary
MD5: ad03bc546b37ef44db3cfa1e00c2ea47
SHA256: 2fca11241229fd4c5948f4c25657a9bcdcdff44237d0d0450b01ed6496c769eb
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.sbstore
binary
MD5: ba0009932844173bc8f9af264229df24
SHA256: 66d1c00c04d86e313e9a02775cdf906b1be8d4cd6bef423a1b9e21cc4e9f50c1
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.sbstore
binary
MD5: 6f85bc4b2ecb49e26b0bd83a821065d0
SHA256: c0b3bc9b3dc507ab654caf72d13c3aefa58c9b13b1e4d14dd8816712d80a7e54
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.sbstore
binary
MD5: c921d8e98fa01b4f303481e112202e92
SHA256: 4ef1038730ec8bc7206713c29a936768831b922c5e6c83355fd62d7401d8c1dc
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.sbstore
binary
MD5: 04824a1f92353f43ebb9e7f74b7476fd
SHA256: b48e58ebab82e4c376f16150a3fff850c1111ff1f5985d68819cfd6f0db159d2
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.sbstore
binary
MD5: 0e8fe60ccd7e9b4c32589a5743a95302
SHA256: 2b124d4026850a3cffd28dbacb58aec28f7dcd4d40bc14e52bbe96d60ce4e749
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.sbstore
binary
MD5: cd82f4495eafe523b9b6b938c828611b
SHA256: 576a0d2c3ad8d66bb202439b18f9fd563f92d9ddd9582a3c4cce0ecafd4f0908
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.sbstore
binary
MD5: d886a47c89d9c49c795da345bc236990
SHA256: a03c5e2656d2f292bf5794c8eeb8d223cd6ba4f4bfb2ed1f325460e879d0bcf7
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9E5950DD55C177A4ABDCF648BAF5966E4A621F1E
der
MD5: 17c555fe702c4adfaeac30b69a6e7d2b
SHA256: 050b3841b955d71a0b298e5db28af450b517aaa623c921756671c0b9d53a741f
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6FA820AD9A919C53477DCAB3C2E2E2EED9EF40BF
der
MD5: 5f2ddc20b88dc27b7a4956be54565ea9
SHA256: 52ed4ac9405535235d68e147900742e5e6f49ca61fc20d2077829765d41c31b0
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: c593f7f584e2bc59f80d06742d1f2e81
SHA256: 04f17a50a2d005c8bf60ec6337394ee3800a137dd1958a238811e3ec05612d3a
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FC9FD1A9AAC09A011945AA1C57946F9AF1745983
der
MD5: 962e1a317aae268467775efcdfc38ea4
SHA256: fd033f0f74b62b2504a1fbb5f05637076bcca6709ae47f14c6f3d0fc0ff4f3c7
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: d559f6b16f847961c10f713e464fc3ee
SHA256: 75745150ef8c329a85d720d038492c1cdf2261a4ce188b962cd69ea9b00ece0a
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json
text
MD5: c4ab2ee59ca41b6d6a6ea911f35bdc00
SHA256: 00ad9799527c3fd21f3a85012565eae817490f3e0d417413bf9567bb5909f6a2
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json.tmp
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json
text
MD5: ea8b62857dfdbd3d0be7d7e4a954ec9a
SHA256: 792955295ae9c382986222c6731c5870bd0e921e7f7e34cc4615f5cd67f225da
3004
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cookies.sqlite-shm
––
MD5:  ––
SHA256:  ––
3004
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache-current.bin
binary
MD5: 707c12070c52e55c2a996ac15e219b95
SHA256: 6c5410c655c8efc48d123abe708c8940a4218072c0daf85e03ab45da6d2ce6b9

Find more information of the staic content and download it at the full report

Network activity

HTTP(S) requests
20
TCP/UDP connections
66
DNS requests
130
Threats
0

HTTP requests

PID Process Method HTTP Code IP URL CN Type Size Reputation
3004 firefox.exe GET 200 2.16.186.112:80 http://detectportal.firefox.com/success.txt unknown
text
whitelisted
3004 firefox.exe POST 200 143.204.208.145:80 http://ocsp.sca1b.amazontrust.com/ US
binary
der
whitelisted
3004 firefox.exe POST 200 143.204.208.145:80 http://ocsp.sca1b.amazontrust.com/ US
binary
der
whitelisted
3004 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
3004 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
3004 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
3004 firefox.exe POST 200 216.58.208.46:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
3004 firefox.exe POST 200 216.58.208.46:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
3004 firefox.exe POST 200 143.204.208.145:80 http://ocsp.sca1b.amazontrust.com/ US
binary
der
whitelisted
3004 firefox.exe POST 200 143.204.208.145:80 http://ocsp.sca1b.amazontrust.com/ US
binary
der
whitelisted
3004 firefox.exe POST 200 2.16.186.32:80 http://ocsp.usertrust.com/ unknown
binary
der
whitelisted
3004 firefox.exe POST 200 2.16.186.32:80 http://ocsp.usertrust.com/ unknown
binary
der
whitelisted
3004 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
3004 firefox.exe POST 200 216.58.208.46:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
3004 firefox.exe POST 200 216.58.208.46:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
3004 firefox.exe POST 200 2.16.186.8:80 http://ocsp.comodoca.com/ unknown
binary
der
whitelisted
3004 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
3004 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
3004 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
3004 firefox.exe GET 200 2.16.186.112:80 http://detectportal.firefox.com/success.txt unknown
text
whitelisted

Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID Process IP ASN CN Reputation
3004 firefox.exe 52.17.181.56:443 Amazon.com, Inc. IE unknown
3004 firefox.exe 2.16.186.112:80 Akamai International B.V. –– whitelisted
3004 firefox.exe 52.89.32.107:443 Amazon.com, Inc. US unknown
3004 firefox.exe 143.204.208.145:80 US whitelisted
3004 firefox.exe 93.184.220.29:80 MCI Communications Services, Inc. d/b/a Verizon Business US whitelisted
3004 firefox.exe 52.10.130.148:443 Amazon.com, Inc. US unknown
3004 firefox.exe 34.243.235.206:443 Amazon.com, Inc. IE unknown
3004 firefox.exe 143.204.214.126:443 US suspicious
3004 firefox.exe 143.204.214.107:443 US unknown
3004 firefox.exe 52.218.20.153:443 Amazon.com, Inc. IE unknown
3004 firefox.exe 143.204.214.97:443 US suspicious
3004 firefox.exe 173.241.240.220:443 OPENX TECHNOLOGIES, INC. US unknown
3004 firefox.exe 143.204.208.113:443 US unknown
3004 firefox.exe 172.217.21.200:443 Google Inc. US whitelisted
3004 firefox.exe 216.58.208.46:80 Google Inc. US whitelisted
3004 firefox.exe 216.58.208.42:443 Google Inc. US whitelisted
3004 firefox.exe 151.101.2.2:443 Fastly US shared
3004 firefox.exe 52.214.54.111:443 Amazon.com, Inc. IE unknown
3004 firefox.exe 107.23.28.25:443 Amazon.com, Inc. US unknown
3004 firefox.exe 2.16.186.32:80 Akamai International B.V. –– whitelisted
3004 firefox.exe 52.89.170.53:443 Amazon.com, Inc. US unknown
3004 firefox.exe 143.204.214.105:443 US unknown
3004 firefox.exe 172.217.22.46:443 Google Inc. US whitelisted
3004 firefox.exe 64.233.167.154:443 Google Inc. US whitelisted
3004 firefox.exe 52.218.104.177:443 Amazon.com, Inc. IE unknown
3004 firefox.exe 216.58.207.42:443 Google Inc. US whitelisted
3004 firefox.exe 69.172.216.55:443 Integral Ad Science, Inc. US unknown
3004 firefox.exe 173.241.240.143:443 OPENX TECHNOLOGIES, INC. US unknown
3004 firefox.exe 2.18.235.40:443 Akamai International B.V. –– whitelisted
3004 firefox.exe 2.16.186.8:80 Akamai International B.V. –– whitelisted
3004 firefox.exe 3.8.55.10:443 US unknown
3004 firefox.exe 69.172.216.58:443 Integral Ad Science, Inc. US unknown
3004 firefox.exe 104.244.36.20:443 Integral Ad Science, Inc. US unknown
3004 firefox.exe 151.101.0.176:443 Fastly US unknown
3004 firefox.exe 34.218.159.169:443 Amazon.com, Inc. US unknown
3004 firefox.exe 52.218.52.121:443 Amazon.com, Inc. IE unknown
3004 firefox.exe 52.218.96.137:443 Amazon.com, Inc. IE unknown

DNS requests

Domain IP Reputation
wetransfer.com 52.17.181.56
63.32.254.57
54.194.245.117
shared
detectportal.firefox.com 2.16.186.112
2.16.186.50
whitelisted
a1089.dscd.akamai.net No response whitelisted
search.services.mozilla.com 52.89.32.107
34.216.89.123
52.27.184.151
whitelisted
ocsp.sca1b.amazontrust.com 143.204.208.145
143.204.208.79
143.204.208.173
143.204.208.150
whitelisted
search.r53-2.services.mozilla.com 52.27.184.151
34.216.89.123
52.89.32.107
whitelisted
ocsp.digicert.com 93.184.220.29
whitelisted
cs9.wac.phicdn.net No response whitelisted
tiles.services.mozilla.com 52.10.130.148
35.166.45.24
34.216.156.21
34.215.13.51
34.209.108.219
52.25.70.97
52.34.107.172
52.39.131.77
whitelisted
tiles.r53-2.services.mozilla.com 52.39.131.77
52.34.107.172
52.25.70.97
34.209.108.219
34.215.13.51
34.216.156.21
35.166.45.24
52.10.130.148
whitelisted
prod-cdn.wetransfer.net 143.204.214.107
143.204.214.21
143.204.214.45
143.204.214.89
whitelisted
wtplus.wetransfer.com 34.243.235.206
52.16.134.74
shared
backgrounds.wetransfer.net 143.204.214.126
143.204.214.25
143.204.214.110
143.204.214.62
whitelisted
assets.wetransfer.net 143.204.214.97
143.204.214.66
143.204.214.8
143.204.214.83
whitelisted
wetransferbackgrounds-eu.s3.amazonaws.com 52.218.20.153
shared
wetransfer-d.openx.net 173.241.240.220
whitelisted
s3-3-w.amazonaws.com No response shared
d19ptbnuzhibkh.cloudfront.net 143.204.208.113
143.204.208.141
143.204.208.151
143.204.208.70
whitelisted
www.googletagmanager.com 172.217.21.200
whitelisted
www-googletagmanager.l.google.com 172.217.21.200
whitelisted
ocsp.pki.goog 216.58.208.46
whitelisted
www3.l.google.com 216.58.208.46
whitelisted
safebrowsing.googleapis.com 216.58.208.42
whitelisted
app.launchdarkly.com 151.101.2.2
151.101.66.2
151.101.130.2
151.101.194.2
whitelisted
f2.shared.global.fastly.net 151.101.194.2
151.101.130.2
151.101.66.2
151.101.2.2
whitelisted
snowplow.wetransfer.com 52.214.54.111
34.255.246.248
unknown
snowplow-collecto-6so8xijrvdjt-527183171.eu-west-1.elb.amazonaws.com 34.255.246.248
52.214.54.111
unknown
events.launchdarkly.com 107.23.28.25
18.204.118.71
107.23.222.30
34.195.196.170
54.210.179.47
54.209.204.79
52.201.53.178
54.210.89.192
whitelisted
ocsp.usertrust.com 2.16.186.32
2.16.186.41
whitelisted
a207.dscb.akamai.net 2.16.186.41
2.16.186.32
whitelisted
shavar.services.mozilla.com 52.89.170.53
52.34.90.23
52.33.113.226
34.211.202.13
54.187.144.104
54.200.76.177
whitelisted
shavar.prod.mozaws.net No response whitelisted
tracking-protection.cdn.mozilla.net 143.204.214.105
143.204.214.80
143.204.214.50
143.204.214.56
whitelisted
d1zkz3k4cclnv6.cloudfront.net 143.204.214.56
143.204.214.50
143.204.214.80
143.204.214.105
whitelisted
www.google-analytics.com 172.217.22.46
whitelisted
www-google-analytics.l.google.com 172.217.22.46
whitelisted
stats.g.doubleclick.net 64.233.167.154
64.233.167.156
64.233.167.155
64.233.167.157
whitelisted
stats.l.doubleclick.net No response whitelisted
ajax.googleapis.com 216.58.207.42
172.217.16.138
172.217.22.42
172.217.22.74
216.58.210.10
172.217.16.202
172.217.18.106
172.217.21.234
216.58.205.234
172.217.18.10
172.217.18.170
whitelisted
googleapis.l.google.com 172.217.18.170
172.217.18.10
216.58.205.234
172.217.21.234
172.217.18.106
172.217.16.202
216.58.210.10
172.217.22.74
172.217.22.42
172.217.16.138
216.58.207.42
whitelisted
delivery-europe-west-1.openx.net 173.241.240.220
whitelisted
pixel.adsafeprotected.com 69.172.216.55
whitelisted
u.openx.net 173.241.240.143
whitelisted
z.moatads.com 2.18.235.40
whitelisted
anycast.pixel.adsafeprotected.com 69.172.216.55
whitelisted
e13136.g.akamaiedge.net 2.18.235.40
whitelisted
ocsp.comodoca.com 2.16.186.8
2.16.186.16
whitelisted
a652.dscb.akamai.net No response whitelisted
geo.moatads.com 3.8.55.10
18.130.64.138
35.179.0.94
35.176.167.2
35.177.180.124
35.177.188.212
35.177.197.190
18.130.132.96
whitelisted
nado-elb-eu-west-2-1479693075.eu-west-2.elb.amazonaws.com 18.130.132.96
35.177.197.190
35.177.188.212
35.177.180.124
35.176.167.2
35.179.0.94
18.130.64.138
3.8.55.10
whitelisted
static.adsafeprotected.com 69.172.216.58
whitelisted
anycast.static.adsafeprotected.com No response whitelisted
dt.adsafeprotected.com 104.244.36.20
whitelisted
nyidt.adsafeprotected.com No response unknown
js.stripe.com 151.101.0.176
151.101.64.176
151.101.128.176
151.101.192.176
whitelisted
stripecdn.map.fastly.net 151.101.192.176
151.101.128.176
151.101.64.176
151.101.0.176
whitelisted
aus5.mozilla.org 34.218.159.169
54.148.138.18
52.32.77.100
52.37.35.5
54.186.118.41
35.163.20.157
54.149.111.157
52.43.79.30
whitelisted
balrog-aus5.r53-2.services.mozilla.com No response whitelisted

Threats

No threats detected.

Debug output strings

No debug info.