General Info

URL

https://1drv.ms/o/s!AtARciiAK9J8aOe7rFx1lvNnx18

Full analysis
https://app.any.run/tasks/8d7917ca-3488-4c54-9be5-fe28cba33991
Verdict
Malicious activity
Analysis date
11/8/2019, 17:22:06
OS:
Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Tags:

opendir

Indicators:

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distored by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.

Software environment set and analysis options

Launch configuration

Task duration
120 seconds
Additional time used
60 seconds
Fakenet option
off
Heavy Evaision option
off
MITM proxy
off
Route via Tor
off
Network geolocation
off
Privacy
Public submission
Autoconfirmation of UAC
on

Software preset

  • Internet Explorer 8.0.7601.17514
  • Adobe Acrobat Reader DC MUI (15.023.20070)
  • Adobe Flash Player 26 ActiveX (26.0.0.131)
  • Adobe Flash Player 26 NPAPI (26.0.0.131)
  • Adobe Flash Player 26 PPAPI (26.0.0.131)
  • Adobe Refresh Manager (1.8.0)
  • CCleaner (5.35)
  • FileZilla Client 3.36.0 (3.36.0)
  • Google Chrome (75.0.3770.100)
  • Google Update Helper (1.3.34.7)
  • Java 8 Update 92 (8.0.920.14)
  • Java Auto Updater (2.8.92.14)
  • Microsoft .NET Framework 4.7.2 (4.7.03062)
  • Microsoft Office Access MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Access MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office Access MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office Access MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office Access MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office Access MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office Access MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office Access MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office Access MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office Access MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office Access Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Excel MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Excel MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office Excel MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office Excel MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office Excel MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office Excel MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office Excel MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office Excel MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office Excel MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office Excel MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office Groove MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office Groove MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office Groove MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office Groove MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office Groove MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office Groove MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office Groove MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office Groove MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office Groove MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office IME (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office IME (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office InfoPath MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office InfoPath MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office InfoPath MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office InfoPath MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office InfoPath MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office InfoPath MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office InfoPath MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office InfoPath MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office InfoPath MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office Language Pack 2010 - French/Français (14.0.4763.1000)
  • Microsoft Office Language Pack 2010 - German/Deutsch (14.0.4763.1000)
  • Microsoft Office Language Pack 2010 - Italian/Italiano (14.0.4763.1000)
  • Microsoft Office Language Pack 2010 - Japanese/日本語 (14.0.4763.1000)
  • Microsoft Office Language Pack 2010 - Korean/한국어 (14.0.4763.1000)
  • Microsoft Office Language Pack 2010 - Portuguese/Português (Brasil) (14.0.4763.1000)
  • Microsoft Office Language Pack 2010 - Russian/русский (14.0.4763.1000)
  • Microsoft Office Language Pack 2010 - Spanish/Español (14.0.4763.1000)
  • Microsoft Office Language Pack 2010 - Turkish/Türkçe (14.0.4763.1013)
  • Microsoft Office O MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office O MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office O MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office O MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office O MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office O MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office O MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office O MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office O MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office OneNote MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office OneNote MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office OneNote MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office OneNote MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office OneNote MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office OneNote MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office OneNote MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office OneNote MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office OneNote MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office OneNote MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office Outlook MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Outlook MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office Outlook MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office Outlook MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office Outlook MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office Outlook MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office Outlook MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office Outlook MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office Outlook MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office Outlook MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office PowerPoint MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office PowerPoint MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office PowerPoint MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office PowerPoint MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office PowerPoint MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office PowerPoint MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office PowerPoint MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office PowerPoint MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office PowerPoint MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office PowerPoint MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office Professional 2010 (14.0.6029.1000)
  • Microsoft Office Proof (Arabic) 2010 (14.0.4763.1000)
  • Microsoft Office Proof (Basque) 2010 (14.0.4763.1000)
  • Microsoft Office Proof (Catalan) 2010 (14.0.4763.1000)
  • Microsoft Office Proof (Dutch) 2010 (14.0.4763.1000)
  • Microsoft Office Proof (English) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (French) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (Galician) 2010 (14.0.4763.1000)
  • Microsoft Office Proof (German) 2010 (14.0.4763.1000)
  • Microsoft Office Proof (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office Proof (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office Proof (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office Proof (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office Proof (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office Proof (Spanish) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office Proof (Ukrainian) 2010 (14.0.4763.1000)
  • Microsoft Office Proofing (English) 2010 (14.0.6029.1000)
  • Microsoft Office Proofing (French) 2010 (14.0.4763.1000)
  • Microsoft Office Proofing (German) 2010 (14.0.4763.1000)
  • Microsoft Office Proofing (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office Proofing (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office Proofing (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office Proofing (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office Proofing (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office Proofing (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office Proofing (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office Publisher MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Publisher MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office Publisher MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office Publisher MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office Publisher MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office Publisher MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office Publisher MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office Publisher MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office Publisher MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office Publisher MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office SharePoint Designer MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office SharePoint Designer MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office SharePoint Designer MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office SharePoint Designer MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office SharePoint Designer MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office SharePoint Designer MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office SharePoint Designer MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office SharePoint Designer MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office SharePoint Designer MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office Shared MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Shared MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office Shared MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office Shared MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office Shared MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office Shared MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office Shared MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office Shared MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office Shared MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office Shared MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office Shared Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Single Image 2010 (14.0.6029.1000)
  • Microsoft Office Word MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Word MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office Word MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office Word MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office Word MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office Word MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office Word MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office Word MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office Word MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office Word MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Office X MUI (French) 2010 (14.0.4763.1000)
  • Microsoft Office X MUI (German) 2010 (14.0.4763.1000)
  • Microsoft Office X MUI (Italian) 2010 (14.0.4763.1000)
  • Microsoft Office X MUI (Japanese) 2010 (14.0.4763.1000)
  • Microsoft Office X MUI (Korean) 2010 (14.0.4763.1000)
  • Microsoft Office X MUI (Portuguese (Brazil)) 2010 (14.0.4763.1000)
  • Microsoft Office X MUI (Russian) 2010 (14.0.4763.1000)
  • Microsoft Office X MUI (Spanish) 2010 (14.0.4763.1000)
  • Microsoft Office X MUI (Turkish) 2010 (14.0.4763.1013)
  • Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (9.0.30729.6161)
  • Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (10.0.40219)
  • Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (12.0.30501.0)
  • Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.21.27702 (14.21.27702.2)
  • Microsoft Visual C++ 2019 X86 Additional Runtime - 14.21.27702 (14.21.27702)
  • Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.21.27702 (14.21.27702)
  • Mozilla Firefox 68.0.1 (x86 en-US) (68.0.1)
  • Notepad++ (32-bit x86) (7.5.1)
  • Opera 12.15 (12.15.1748)
  • Skype version 8.29 (8.29)
  • Update for Microsoft .NET Framework 4.7.2 (KB4087364) (1)
  • VLC media player (2.2.6)
  • WinRAR 5.60 (32-bit) (5.60.0)

Hotfixes

  • Client LanguagePack Package
  • Client Refresh LanguagePack Package
  • CodecPack Basic Package
  • Foundation Package
  • IE Troubleshooters Package
  • InternetExplorer Optional Package
  • KB2534111
  • KB2999226
  • KB4019990
  • KB976902
  • LocalPack AU Package
  • LocalPack CA Package
  • LocalPack GB Package
  • LocalPack US Package
  • LocalPack ZA Package
  • ProfessionalEdition
  • UltimateEdition

Behavior activities

MALICIOUS SUSPICIOUS INFO

No malicious indicators.

Creates files in the program directory
  • firefox.exe (PID: 2728)
Reads CPU info
  • firefox.exe (PID: 2728)
Application launched itself
  • firefox.exe (PID: 2728)
  • firefox.exe (PID: 1576)
Dropped object may contain Bitcoin addresses
  • firefox.exe (PID: 2728)
Creates files in the user directory
  • firefox.exe (PID: 2728)

Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report

Screenshots

Processes

Total processes
40
Monitored processes
6
Malicious processes
0
Suspicious processes
0

Behavior graph

+
start firefox.exe no specs firefox.exe firefox.exe no specs firefox.exe firefox.exe firefox.exe
Specs description
Program did not start
Integrity level elevation
Task сontains an error or was rebooted
Process has crashed
Task contains several apps running
Executable file was dropped
Debug information is available
Process was injected
Network attacks were detected
Application downloaded the executable file
Actions similar to stealing personal data
Behavior similar to exploiting the vulnerability
Inspected object has sucpicious PE structure
File is detected by antivirus software
CPU overrun
RAM overrun
Process starts the services
Process was added to the startup
Behavior similar to spam
Low-level access to the HDD
Probably Tor was used
System was rebooted
Connects to the network
Known threat

Process information

Click at the process to see the details.

PID
1576
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" "https://1drv.ms/o/s!AtARciiAK9J8aOe7rFx1lvNnx18"
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
No indicators
Parent process
––
User
admin
Integrity Level
MEDIUM
Exit code
0
Version:
Company
Mozilla Corporation
Description
Firefox
Version
68.0.1
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll

PID
2728
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" https://1drv.ms/o/s!AtARciiAK9J8aOe7rFx1lvNnx18
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
MEDIUM
Version:
Company
Mozilla Corporation
Description
Firefox
Version
68.0.1
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\kbdus.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\psapi.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wbemcomn.dll
c:\windows\system32\wship6.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\winsta.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\mscms.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\d2d1.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\sspicli.dll
c:\progra~1\mozill~1\nssckbi.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\fwpuclnt.dll
c:\windows\system32\explorerframe.dll
c:\windows\system32\duser.dll
c:\windows\system32\dui70.dll
c:\windows\system32\actxprxy.dll
c:\program files\adobe\acrobat reader dc\reader\acrord32.exe
c:\program files\mozilla firefox\mozavutil.dll
c:\program files\mozilla firefox\mozavcodec.dll
c:\windows\system32\mfplat.dll
c:\windows\system32\mf.dll
c:\windows\system32\atl.dll
c:\windows\system32\ksuser.dll
c:\windows\system32\dxva2.dll
c:\windows\system32\evr.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\msmpeg2adec.dll
c:\windows\system32\slc.dll
c:\windows\system32\msmpeg2vdec.dll
c:\windows\system32\sqmapi.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\windowscodecs.dll
c:\windows\system32\ehstorshell.dll
c:\windows\system32\cscui.dll
c:\windows\system32\cscdll.dll
c:\windows\system32\cscapi.dll
c:\windows\system32\ntshrui.dll
c:\windows\system32\srvcli.dll
c:\windows\system32\imageres.dll
c:\windows\system32\icm32.dll

PID
2184
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2728.0.948578205\2003081460" -parentBuildID 20190717172542 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2728 "\\.\pipe\gecko-crash-server-pipe.2728" 1172 gpu
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
No indicators
Parent process
firefox.exe
User
admin
Integrity Level
MEDIUM
Version:
Company
Mozilla Corporation
Description
Firefox
Version
68.0.1
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\mfplat.dll
c:\windows\system32\mf.dll
c:\windows\system32\atl.dll
c:\windows\system32\ksuser.dll
c:\windows\system32\dxva2.dll
c:\windows\system32\evr.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll

PID
2856
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2728.3.818885202\1431381812" -childID 1 -isForBrowser -prefsHandle 796 -prefMapHandle 1352 -prefsLen 1 -prefMapSize 191824 -parentBuildID 20190717172542 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2728 "\\.\pipe\gecko-crash-server-pipe.2728" 1716 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
68.0.1
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\wship6.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll

PID
2196
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2728.13.1087627498\852165200" -childID 2 -isForBrowser -prefsHandle 2688 -prefMapHandle 2824 -prefsLen 5997 -prefMapSize 191824 -parentBuildID 20190717172542 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2728 "\\.\pipe\gecko-crash-server-pipe.2728" 2836 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
68.0.1
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wship6.dll
c:\windows\system32\mscms.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll

PID
4060
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2728.20.1055491122\575758286" -childID 3 -isForBrowser -prefsHandle 3720 -prefMapHandle 3724 -prefsLen 7130 -prefMapSize 191824 -parentBuildID 20190717172542 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2728 "\\.\pipe\gecko-crash-server-pipe.2728" 3736 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
68.0.1
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll

Registry activity

Total events
371
Read events
366
Write events
5
Delete events
0

Modification events

PID
Process
Operation
Key
Name
Value
2728
firefox.exe
write
HKEY_CURRENT_USER\Software\Mozilla\Firefox\Launcher
C:\Program Files\Mozilla Firefox\firefox.exe|Browser
DCBF061803000000
2728
firefox.exe
write
HKEY_CURRENT_USER\Software\Mozilla\Firefox\Launcher
C:\Program Files\Mozilla Firefox\firefox.exe|Telemetry
1
2728
firefox.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
2728
firefox.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
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
1576
firefox.exe
write
HKEY_CURRENT_USER\Software\Mozilla\Firefox\Launcher
C:\Program Files\Mozilla Firefox\firefox.exe|Launcher
6A55031803000000

Files activity

Executable files
0
Suspicious files
148
Text files
71
Unknown types
95

Dropped files

PID
Process
Filename
Type
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db-journal
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AC8656FCB30AD427D141BC464A44EBE0D7AC1F37
ini
MD5: b7094f3677b776f173f586d119d27d6f
SHA256: 3db3479544497a69c2bd50c06a4bc4b7b5d41e274e19fe8a6cb83198b84f4ad5
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\index
binary
MD5: ce63d35c553d615bd10670c6106e6aa4
SHA256: e28375ce845b7f05514cdb29952b122e85940a6ae1d3c0704649cc7ca19754bf
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9D90F09714DC7C76CFA5717FC9D2AAA6ACE9D16D
compressed
MD5: 7c4b2888c37124d5eb96ca12fc71f980
SHA256: 428857846fe80c947b59ff7b7d47856561ed583c17fc1b034090aec0122aa0a3
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\index.tmp
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 897b4adebf31e637648bec4e7426d4af
SHA256: 696794d11d33c136cc5d4d8dd1248a978d7f27355bd52020b75d84d1f99f92e0
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 478595390626e179570fd1312be5b72b
SHA256: 6af92e8415e6cd67205ed46a2621692e093e2667d70f721b9d8fb3d21cca1826
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 432287a936c83f0734461cbe1435eee6
SHA256: 54228f2f786f627f163c323d87a1a585f06083606b4f37c61518cf44bacd565c
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db-journal
binary
MD5: 2a60fce7c59ec26fb04596507af1bd99
SHA256: b5d3d6817cf5eccc3122c267c11c166912dc56d3800f26253b3cc8a2fb3e0306
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\broadcast-listeners.json.tmp
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: cf6233b28d38b0fed1d80b221e1ef24b
SHA256: cd754491f3f780ccf6d44f0b43498220cfa72e76211ef9691ceb23908e46f7e2
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs-1.js
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\aborted-session-ping
text
MD5: 35ca898987056352ea6e12945ff2706b
SHA256: c6a9cb04a5d8d7375ff81390e7b92346cffc52fbb63a9921443fd7aaa8425d8a
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\aborted-session-ping.tmp
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\session-state.json
text
MD5: 2730579ae1d65932d764cb7118e90a22
SHA256: 138c8e9335a6d8977ed9080a0543156240acc6f2cdf1364be8596df7cb3e21d6
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\session-state.json.tmp
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\crashes\store.json.mozlz4
jsonlz4
MD5: a6338865eb252d0ef8fcf11fa9af3f0d
SHA256: 078648c042b9b08483ce246b7f01371072541a2e90d1beb0c8009a6118cbd965
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\crashes\store.json.mozlz4.tmp
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: b913c335be3d3abab71293848acbfb5c
SHA256: 7c0370f5367031fb3d01d7195571e33139eded5c6dffb2aa8b20958b23a6929f
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 393922a7ab580e46607f0619b29e3e5c
SHA256: 7a0e033efcfe31774f7502534c56bd971fd2fb1c3fcf3663ab2db8f82cfc8eef
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4.tmp
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EFF18C4F28C84BD68DA56B09F839FA3C2D7B129A
binary
MD5: 4047bf36d809e9a8f963553055624973
SHA256: 7416a22bad9101f76fb4678fa439cd33deedb032bce0f1ec1e48df56442b238f
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\30074DCEE48014B000C2727A50397BA9368103DC
woff2
MD5: 7f94b2a64c2ce48c08f11bb696ea3447
SHA256: a8dee518585ad2b9aae54fbfbe9915444f4a0ee8de442ba540cec0094ff7113d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F98708666D00EA339092EA18F855FECB79525459
woff2
MD5: 3379a2492b8e2b5e13b80c45a0afc133
SHA256: aa5b9a23cb774b2d9130946e0d70ad9dea892c4d4370ff004c5673da79c27b51
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3B42A897B18AD410EE78042B01668956EB54BC75
image
MD5: ff1624f5fc1bba572fc20c84f7e3982f
SHA256: a63d7449765786453d94bf92c2555493138f09bf8ca412c5fb2caca8e61ca694
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F385C52E7F6BFF33BA29F3434797CC8D50A6F9EE
der
MD5: 02f203a5f4dac7c08e2f49ac0a6c80f6
SHA256: 8c9a168ca458c05a04f9c0046bd626278902548c9d41e469b32b24a52f8ce0bc
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5A4C401886C0C014D5464412E6BF8D4E053438C3
der
MD5: 0f7734e2ad4e5ba9a349d0527745b83a
SHA256: 92cc19d8cdcc46383fe8ea436b004f94b583334b809cf205e56bdbbec9c34b51
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4CEA107D216BB271FCBC35A2EDAEC311F469CF9B
image
MD5: 50b0ac4f457f7c89df4ea28f89e2c737
SHA256: 9b336124be1637fe60ed2c85c0fa9e1272afcd8e51e52e8ff1a5e6e298b94c32
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6E70E41C51684DD6B23186B382741EB3FFC684FC
image
MD5: 4b4c2384c8de71dd81d92c3c94675241
SHA256: e7629a867a4b164eeba162068a95e1a207a559cde7c8e4969720064515da3bc9
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0A45E8A9467554EB452F3BB9977E9ABAF5C16EB3
compressed
MD5: 5688d1fb919eabc512f52449ac82bcdc
SHA256: 509c850b3e80c0ab1a756965cff6ac23e660370d45be897fcd37178cece98a25
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C8496C14104A3D048338EEE03A37D87F684034DA
image
MD5: 59c95fa6695ae7000744563bdbb39305
SHA256: 6d05f09bf06cef61111096121919cf5e88dc6470bf0902a4fd2438b7c7c5f3ad
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4BD1671B16F0ABD1286A0C09E21BD43DD2ABF1C1
image
MD5: 3da1209a30d37bd3f510b051442d69ea
SHA256: 5d0081acc7f3e88cdb7a51d09c0253c54ca3eff72c6409165db48179399b7f04
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6790DDBEE24C2A8267B3A64A2D8E7128BC9BB1EE
image
MD5: 44768a76ffdc8b998866ba37795d8da1
SHA256: 2a3299f7ca341d247db79b3c00fd467d2588de9ca8c9c2195f5497ee68ecd43b
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2849392BB9E748DEFA7814FE93D18B420CCC4C28
image
MD5: 800a9026ce4edfc9150e63f424478e8d
SHA256: 28165301e0f570b8aaa3ed2d50cc9c7bdbdae5d7bf5a9fc6235c43c4ff7e9228
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BA85CDC629391445ED9A839A245D90BF58033A3D
compressed
MD5: 0243008421b54993594db8c99bb8be4a
SHA256: 50840a7d2ae0307fe7504c98bbc2a6aef32a674db500a520063171189ebad417
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9D08D3D06B6618DE7178B32C3593B4FE09D986A8
image
MD5: 6cf90146800590310b32fa5a27cf594c
SHA256: ca7f02d0d10a8a72872ec9dd42b757dc4f8de715c350428ed4d00f45dd28f4f7
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6FC8861341E7B7FC15C6F0538495DE80DEB62E3C
compressed
MD5: ad5ff6749fd18587847eee209dd1ec53
SHA256: c42280c723b4bfbe4db0d8de2694e77357ca381cd99ccb5eccf3b9266c211071
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9FF52BB34D55B626178B25739A3DE3926B6D324F
image
MD5: 8b41ad1aa32d3f3e697d830573f0c72a
SHA256: 1163ed8b8034f001a4c12f17ef0012c0032b9fd51b1dbedc5f8c5f28b84e699e
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BF4B3A1CEF3477CDD08C8BF68FBD90FA7BA27CED
compressed
MD5: 9b1572056b42f11917b0c94a93e42e70
SHA256: 18dd066bf5fe31f3ee474daf7708ea36f5ea1675f9f0aeebf1c6556aadb32648
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\05BBB627C47E05EAFD746506689D4AC306119F9C
image
MD5: a0b291b03efb46847ca3c4d0cde4cc27
SHA256: 248b64d6e47e168e2e9f26149a551429361f8bdaa8c5e3444f5edf25b55902b7
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C830BDC4329279B9CD5B2DF1754A49E3F55CDA05
compressed
MD5: 4249510e8291b5f44c5de2a67d2b9de9
SHA256: fd3037061f8b3418d35dfca1ecb2980a8c705457100ff7b11457bf6a0f03b984
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EF982240CF109F642ADB462FA9189C1A660C0EBB
image
MD5: 208600f10ed307d45cb6278bdba7984d
SHA256: f72b16353ec1e0054c50c04054d0096dc4ffe9b11039e3e234a1f7cf67599f18
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: b913c335be3d3abab71293848acbfb5c
SHA256: 7c0370f5367031fb3d01d7195571e33139eded5c6dffb2aa8b20958b23a6929f
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 3aa816001b29b7ff1e828e0cd81521e3
SHA256: 3c78789f851d912a81441fd223c8228b35ae847f278e5c3650ade9e115fbd3f0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\866E6A4ADEE8E0194510072E20595A2F9AE50A69
der
MD5: c340fbaa0a8aab65e274d0f8897ef2e6
SHA256: 15893175fcf9221461759d2dcf0f8b7cb2eb2c1ebd81a9e795b6990e98fb12ea
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 51d2294563ff8f7cdaad2523623dc695
SHA256: d7d73b889e51e1dbf9a64021f60e424f0b4370efaf4981ffa0b68254ee589b39
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 560200d5e6431492076738f93cd25f46
SHA256: 6b2e14682f8fe694b11c6870784e9d7967ad800a782b1b4190e2a5857adb8998
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\extensions.json
text
MD5: 9cf5e9e40b5f764838f42c8f2721957f
SHA256: ad9889206f043a9d31af59d6db2a74d9680930c009a560e8cd158bafa271af8f
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\extensions.json.tmp
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\permissions.sqlite-journal
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\982AAF8F9D98F65AEE4416EDB74239E90017D042
binary
MD5: f1504c2288406e9b0f5993a261822ba9
SHA256: 160b5516e615af515115233914c7455c0b52aa5944853d32e2cbb67b67e1b1cb
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9D90F09714DC7C76CFA5717FC9D2AAA6ACE9D16D
compressed
MD5: a4cd90f129da720a06da3a96cee0eb31
SHA256: 7ef1eb43bbe04eecb06649a9f0296c091eacae0fadcf04cd6e081b70edc5409e
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EFF18C4F28C84BD68DA56B09F839FA3C2D7B129A
binary
MD5: d4b8bb4993bc0903afb837917552ee7f
SHA256: 9c85694d2a37e58b1b6a8aeb6d2070947b21dd2c90a03aa657dae79316c98811
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\34A4A76A1847E032AF1B09BFFAA3D3E974215875
binary
MD5: d552773ce8bef4c050c57643dcf9104a
SHA256: 0bc8f18dbecbf232fcdae41c9e72b173f8e264d41d39e3bfaefc84c0949f36c4
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D67CE4F0ED678E14BFF36BED331AEC61E699458D
binary
MD5: fb9ac5ad1ca992b2f5ffd19afe6ade45
SHA256: a20316b9de244eaeeca47328576d1f4c2a4f9cb83be5e06147e8cb834055301e
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\22157
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0F0AC672544C8928D55087CD875C1CA30DA33585
compressed
MD5: a97418bcff6c579157217e15d717d5c7
SHA256: b97ee0262e471d78917d78476d64ed13225701be7808acd8cd8ae0221d193bc4
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FCF75CEF4A61E07252B25438826544857E224E73
compressed
MD5: a0db34d1d8feff8d9c13244cc6ac5d70
SHA256: 291888271c2bd294db6f15dfaaf95e0249323a752709216d2cebceb8e3acb0d5
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\77BAF6641F88014E2CF8186BA145853585B7D81E
compressed
MD5: 6bcb64764ec8c6c8d5e3057aca1c0a67
SHA256: e0f72a0aa7125c80a312a242dc46f7083dbbf4096be38cab92e1029065fbb7f1
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\70711B468FE73ECD2B46C1FCBD3792AE1BA0C461
compressed
MD5: f64fb7afb0f6d863dc611bde058ea5b2
SHA256: 77ee51eaf73b894d6d94c7da3297de9cbf933fffd3215cac1bc997018854373f
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\342D82FDB3B55639774FCEA8E0D30D11866128B5
compressed
MD5: 0af30432dff0ffd15293c6dae7f92a6a
SHA256: 1e9507ab415af9aabbed08f252380e0253006482952e4cb4345550666882a6fa
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\505CC229618F99B209C81BCDC72CD69D3475CF5D
compressed
MD5: d9d89985ac471ba1f89590ce9100c41f
SHA256: 5c95ff21581c8a9faf1fec42a4b703a4431156f0a95d5aa3fcb9becb0938eab7
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E342AFE3AA073BEC9E0013FB5865FCE2CA0D13CD
compressed
MD5: a19a4b2bd72785cf711000a3cf23d6bd
SHA256: c3d8d0aa7d050a69cf009c738b584c943fc6d0b3208c583c19dfeac79f5e4d41
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BF7FE4CFAAB34D267BF85819576CC2AB2B547D83
compressed
MD5: f3d042eebde1de6503a62e8acb59eece
SHA256: 7eefacc37dc435955e1b5f60b1da3e3cdf860d72f3fb823caf8b210e5aef5d42
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CA16C4637E029C81920E5850CF8757E4CC348BF6
compressed
MD5: 7f5398638ba86add9fee99caf2d1ea05
SHA256: 372500ec101829d5773e862e2a87ccfa0726922d0060c0f2014d5e2e715261e4
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\95536EF4C3B313A3D5FEF03D9E2B99AB929F36C5
compressed
MD5: ca9103a2b6f480b3119d36292bf245a9
SHA256: 7c431197c37caa435babe43c2c156bb1bd515a97b0b57b5cdc44be1817a3995d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\03D33B9C82A89EBDF0F0A6E665FFCD5B5C7D6B11
htm
MD5: 0457e47d646a4c1205caba19e40f808e
SHA256: 183f8d9cf428550395294b6fb8ca8802ea703cdb4b3dcb6e304dab54b40c38d8
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\09BECF1399534A443B472BAAE78CBD9BF8EC9FC8
compressed
MD5: e34f32dedc2f68b833ac2dbe62f89db8
SHA256: 4b82b5f669d9d147cf3d7c69a936870246864b14e26e2c2fec7bec293d80bc7d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9D90F09714DC7C76CFA5717FC9D2AAA6ACE9D16D
compressed
MD5: 8d13190722a3070a2d0ddc826c1ed404
SHA256: df0826d9bc8f260fd623f9e84f06b52a6953d6e5a44b01f0bef26b458ca0e887
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\24816C4F83486B90BA653FE1B1ECC64C1D7C2434
image
MD5: 971402a769337f845a7f0296faab9cae
SHA256: 3f335d75c81292b328d41176ac64782b9c4be009040b2118ed21e01c508bcd99
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F5FDE6823C7D684305F32A911CA26ADE95FC0C42
image
MD5: 074ee8004acb0f82efe04ea8ea63bc4b
SHA256: 21f7895fe9924e1a0e001a8dda9356595010f4c244276229bebe90846d75bafc
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D86A69651AF52FE7C38664FA72123422D8559179
image
MD5: e8f627e298e91b3653ad5fa62c12170c
SHA256: 0c93efdd7ad465aae68a3f5da9f8ace5c036ac171be4843b2333d667d120c8c0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F2DF721F5BD220DB3F823E461FCE0C144EFE97A2
binary
MD5: e02d223772501ec7686da6a0485e3a44
SHA256: 799c2cffdb05101a569ba50b8c14288903e0dd256dc4576a26eddf1cf6841691
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C204809E971DCA035C4A565ADEBED5E99C090BCE
compressed
MD5: 01aa680f4b83afd4eab06ac4e7d2aa4f
SHA256: 216803adfefd8e310e79d0db5c4b299907691a7702ac718b3f38f37df130ee57
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6F22BC354F048E5F6A011BF720AC471D685A0D9B
binary
MD5: 2d691a41ec4acad0df2ddea42c87325f
SHA256: b2fb90608b6b650a8dcf74cc1a98bf369ed05cefebf0611bead46d35f288ca55
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 75d6a0f011487fe6ec700b576ab27f2e
SHA256: 846a256a81f3835b962c3f096bbeebec6c1f39196f40816760e2c1d0362fc40e
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-backup
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256-1.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256-1.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\social-track-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\social-track-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.vlpset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.vlpset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.metadata
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.metadata
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.vlpset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.vlpset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.metadata
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 544f3ad5c85ec2f41813c091e140b278
SHA256: 11dc8b4c1b425fbbc78d9bf103ef3c56db314d4a1804e03d636228d947a3490d
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 3aa816001b29b7ff1e828e0cd81521e3
SHA256: 3c78789f851d912a81441fd223c8228b35ae847f278e5c3650ade9e115fbd3f0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 889827d626dcfcd113f59d34e18fc6e9
SHA256: 555efe991d913320d9d6b791fea59d58d3ce47a94a5922d39dd650413ef22604
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\content-track-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\content-track-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\analytics-track-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\analytics-track-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\ads-track-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\ads-track-digest256.pset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2A5CF4F48870D105BECC4FBAFC867377947730A8
compressed
MD5: 582fa2217c0cc5b393a7e97f95285865
SHA256: 21a5165801128441684e831640fa1574e1db5920fed293df7b2696bb92a7d4d5
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto-1.vlpset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto-1.vlpset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto-1.vlpset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto-1.vlpset
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\social-track-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\social-track-digest256.sbstore
binary
MD5: 78dcec0cca3c5d108fda713905cb017d
SHA256: c2bcbf8269fd25481a15d67d990137ccb72e4c9af75b0aeabc884218c1105f6e
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.sbstore
binary
MD5: 9582c7d247c75c190135b8f9770b90bd
SHA256: 9936c7df1950b74f63bb7da12e40d95b20e0b8f867737442ee508945aa741ebd
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\content-track-digest256.sbstore
binary
MD5: 9702c14e80e6dd390a450909a81d2c8f
SHA256: 92c485c737f5b403bcea9f344de23fd8a8f3ea3629b244f9499e8dad77f3d6d5
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\content-track-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.sbstore
binary
MD5: 2615ed123b3eb63c61ef0455bb2b34e3
SHA256: a7a21ff9e31b468739b472de3621d3f6d34493be2dc88885cbe526343be20783
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\ads-track-digest256.sbstore
binary
MD5: 6e2df5e8f8fb96e4fbb3af02337dcef6
SHA256: afeae83272c9467d7407c516759977393a17d9a332a3c4786fdf6cbeb0888960
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\analytics-track-digest256.sbstore
binary
MD5: 5da8f75ca7d284f87d29a9b3de7f3305
SHA256: 6f612171da4d86018ba74e660239493084b520d7f67227e9b800e6453ef8e3c5
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\analytics-track-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\ads-track-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite
sqlite
MD5: 4651016d97fd9f3c4242c9cb686e4874
SHA256: de17f0d5ef982822b2eef84721e490bea6997a9fcc8eb76b8aa4e8232bee25ad
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C3C8AC9227B1B1F8CA68F72DFFD341BFF64DF197
compressed
MD5: 7b8cec898340fe00ff7e9fa0bae5a66d
SHA256: b94b487df88973ae0706c37997de285331de16077bed0c19788f9428a138668b
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5507E863A8E174E00FA9CADA96DFA1C4E164E91F
binary
MD5: 26d8c6508b1bb9fbfd6b852d8925c1ba
SHA256: df99f791d350b63f8e606699f653e4a1a93b619ffd128844f2e5248dabc3244a
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D67CE4F0ED678E14BFF36BED331AEC61E699458D
binary
MD5: 9803bf1bd480558fda8e8b91a7e880a5
SHA256: 2d8b8a3f9b32397f693ad85e1d4cf987a7caf41083e8af59e763a7092c55d77d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\34A4A76A1847E032AF1B09BFFAA3D3E974215875
binary
MD5: 5c390903bb4660dc36fa76cfbee653ba
SHA256: a2c9bdafdac941e0d42d8738a807d05b6743e187aa7f2a8540e32f00e7577d57
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5020BBBF20272EC75174584C8F3B876FBD27511A
compressed
MD5: 000b6d7b2b90066d957827bda7d08aae
SHA256: 0f1817081f0fe5f17705babe2cd63b66a8deca01e9a1d522743dc8a966987661
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C3C8AC9227B1B1F8CA68F72DFFD341BFF64DF197
compressed
MD5: a92387cdc9f88b0927820a00e8a96571
SHA256: 5698916e2163618c85749f62807c46d137d4be28e69d772c35dcbfb2ceaa557a
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3EFA1F57D394AC89CAF5A94E9452469C2E9B8F38
compressed
MD5: 34bffe95d324ff464a17bcdb1908b824
SHA256: bf1b9ef67d5e2e7e36572c1b3785a70d9bfd703e75f36847cee09e3942525b82
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\79289C2975104009F6651A76969E3DA52CB89956
binary
MD5: 452df49e30a57ef6a056941c4c94f2d8
SHA256: f30bdbc1fe5d5f11e5fccb6a1eb3084a125adfcbd16536619f291407c3ff35fe
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B1CBBD91C3EB84B82C82400091C60914F0A71B2C
compressed
MD5: ada004b49cb1a233890a83531b520e89
SHA256: 8651e85b2f12a95a03f806b3bbf62c3997c4c8ca2399b6b5c1d6f0bf74fb7aaa
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E84A082DD9155F202A4A803C9BA13AE387E48A3E
compressed
MD5: 3c97726a51c1d6396105cca93808394b
SHA256: a340f45d45b2920115f17754f29439fc51acb12fa54bcc8ab60ed485aef03008
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\843107DE2336AF54477747BA9F2DD7B057D0B11C
compressed
MD5: d0db6fbdf844f2a8ec3da6a6f779436e
SHA256: 38b8285b9d7c71cc303616fd1fa49933be8ca8d709b84993eef69bd2e791dbd0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\63BE779E8B5FC3AE6E33386E2B9DC3750E7A48B4
compressed
MD5: db121335f0444cab6a150dd4fd7684e0
SHA256: 83999e49e456bbbd2080de724b3965a1fbc1d6598a6917c76a42e9f8d75d2408
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AD6FA586B53FA33B1462249C686FB31AC97338C4
binary
MD5: d8338a9049f69276a9b4782423afadc2
SHA256: 0056192b1b3c53336c3a90eca1641946e3b2e7c62caca747c7cb0ed4c9427348
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7A9FBA239D2681C4AB0038A871B2240A20314460
ini
MD5: e4247f67038c7399d06d86ce25104193
SHA256: a67f3e67c576b5fc6337dd35313a482f5c0997d9c1c7243cf48c8558101f468f
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B8954A90B4656A250B2EB878760BED67A58761ED
binary
MD5: b2755bd57a007edd1b7a99c8fefcffa7
SHA256: 3d42a4955a43be30a59a88279d74f748e2520fdfd083cbe7a6f6ecd133cf8f9d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.vlpset
binary
MD5: 41f4df280bdbddf78b1e2a7e5f64cb18
SHA256: d79260923e4c6c16bfc310f39693150c0ffbe0d97d8a6dc46a08e5d10a9af50b
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
binary
MD5: affc8c500a1c830b85acae5baf91b191
SHA256: e83ea987842ec23671ad411e86c6108d211b087181c660c7f7c3cf661575b696
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.metadata
binary
MD5: 45ff9d566090704ccf7ed7cf8f951862
SHA256: 398a7f2aa28365f661494c7f7a84e003dd4efc24311dcf2ffada832efa29a864
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.vlpset
binary
MD5: a030acb8b0b7e7e489f6be73cec50827
SHA256: e041fb9023bda992eb4aae55c855aa33bdc3d333f74b7f11dbb159445499381d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.metadata
binary
MD5: 2e7129d960904101a67f4d20a7b0b796
SHA256: 27f498bc0f409cff50f18151cf38912927ffe518d333602651f409562cde5514
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.vlpset
binary
MD5: 037ff7892d6d5d8aa0c82c492dd7173e
SHA256: 3f7a8d551086f861193117fd9ca70d250efdf802cb9fe97e051c1a20f08f3a7f
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
binary
MD5: 784160df60cfedfb469ca7ab951fc097
SHA256: 3f6cbf15f53dd384341e0b57282535ac9255c67710ebef439c42e3c4c90d3dba
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\837D3FB0BBD4DBC1C485863EA81A3366A4EADB72
ini
MD5: 6e9c456dd07b3f0c72da0a62e5b4a04e
SHA256: 3264076ac4bbf6204dbde4827c28156297ad812bad681e82040b877f73eecf1d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CFEA774ACC11D1E31007693BD8DBD4CBB4C29A64
ini
MD5: d43ede6ff9d87309903dd8bbdaff76b3
SHA256: 5a58301ec8aae0f9bb74be8cab3b1128c6f2752315554688bccc54d469d5187f
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A8BC3635FC1F1AF78FDAAEED5ADC5C96B7F7C293
compressed
MD5: c44c24da78465f1cd05bad68fc164137
SHA256: 9f4ed84320a3661fd08472dcc3127373a4688c0029c8cf9e5ca8ec6844be5814
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\813778DC56E46F954BAF44B3278057A2F8D0C8AB
ini
MD5: c82af59acb68cdb5ef79cf7ec6fd5a15
SHA256: fff99692c1c0533b743d1396432bcfd5ab39bef99e824f81e666ad74256fbf07
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\256C2B08A8A3DE104E495871E99045B4DB5A5F70
compressed
MD5: ce0ff03cbca2bd9c639106b39d43c748
SHA256: b6a8f48a5358622f50ce3810fc1ce8ecf7a17bd7e5688462baaae1f3d7c440a7
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C346FEAA85C9AB2F2A4370395C8290C779EBCEA9
compressed
MD5: 0026b12a089bbf824d0cf52192c8eb64
SHA256: 30796f6786cb315e934b12c69274459a962da09d3a13d6d5e3cf5099fe648be8
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E7314FEDE0F0B452768D19D6037BDDB1ABA785F0
ini
MD5: 03d3a5c275552cfe16b839d6273c8dc0
SHA256: acd45621944d05768dd23ad18fb3309e7d1d9087826c6d657a269682dfd305ef
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 04751e063d25c2ce7994a2184864ebeb
SHA256: b6295e5e99957e39acd73dda9f58e1f3bcc6efe69eea57a9fb772ef030380397
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\00FEE87DE8BAA9EF7EE15F57D82D01AE11290890
compressed
MD5: 712f8486cd0aac737009255a06d44b79
SHA256: 9280f2fff923628eb9d38fb01119696c07ad67d7c8d0d3b83f4c25652f061bdb
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CAEC0504E4B0A09A1A51ECBD113EDB5E428E871B
ini
MD5: f9c097aea4a4bad11c7c28dce78eb91a
SHA256: 5e6e543a40e9178cb4cd0830ca0a68c16d8caeedc9027a91918d3645a901d659
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F044CEE89D5EF0572186EBCAB8B7E6EF3C0FD11D
binary
MD5: 07ba5af02c691d1f9ec0cb884b645622
SHA256: 310007c0d1ebf7cb69e1e7d6b5952b1d5571282629d893ddb758efefcb5be219
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C4112486FFE037563B087A5CE173FAD144CC5654
binary
MD5: b79c7dce1f9c2deb8a7073f11e2ae784
SHA256: 2c3956eea88ff9b5f4416889e2edf9586e62af645f90af327b9a08c7773668f3
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5C8DB9D7939AD360758808206FF888BC3EF45B10
ini
MD5: ea4e663c8d9e7efb8ac09b8db35f25b8
SHA256: aee3eff40051a756bb7041cc7b8ea65cd2de8accc934b032d3b33f895f1a12cd
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\815BF76354C6028E0B32C7B3E349AFB8433882C3
binary
MD5: 4ccf8895d9f07a3740b8c9a0517c0fd3
SHA256: 79106b3a9f8f1973c38fa521a4f3613a018abc0060ca3042a2060173dd7d8a74
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D0AC72860B274B3C3DFCB7F870AE76D4EE59F110
xml
MD5: d3123d2f6ed544995a7128f8649e334b
SHA256: 3236375e4c7290e88ce42dc72c800f3c41a99e6c9415423a2c61d5ce4c49d54e
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D6152F7074ADD1C06CDBD826C9C6E12982983221
ini
MD5: b04b5894c039526438cb3f3aaff6caad
SHA256: 93151b8b68abd454a527e4c8cec3ad9aa529f44f43051bd251c83cf053f1c720
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2B797401EDF088E7EFE6DC0AF4849D53BB2D70CB
ini
MD5: 86ada246c6a2e1cd44103d0f624d8acf
SHA256: adcc454b5b8448a2de9c500341880545352e68002ca9dc17ce0a8ac41ccad83b
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\29305C017880E2AA34D06C7B4E8FC64460F55E6A
ini
MD5: cb188c9b1fe289a04ad238679f273bc8
SHA256: cc755f84f9533b3d893c59f4c54b9cf3c3d3e151b37fbd3cf8dbf8fde46de817
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9F259D8023AAB0404FBF5D2EB5D1A138C385C3DC
ini
MD5: dd2aa50723440b94e454c7d34f3562d6
SHA256: af7f80623a47f5880c916c082220637deda5553fff7bcbf2b85a601d88583b0c
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2CE1C98808F6673BB68567FE7C8A648A37A17472
image
MD5: fa89ad6a98f4c915caaeabbf8db47f8c
SHA256: 876ce128787621cb7fbd4193e7dc7742e471e44a8dd3528b85249c1bd88a6085
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\69C8018B1173AAC6C5BD74C085382E2991E5DECF
der
MD5: ae5181e9a9bb4e6defd747c1f0fb8b6d
SHA256: 6ac56df54910b154bea333174dfa911dd0cabc4ad95805e7b9d17ec9624a71ae
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\broadcast-listeners.json
text
MD5: 11431640bde861117baf57975cfa9bb6
SHA256: 8084a523aaae2e9dacbb3d899869a27c8bd920b7c877fd010b43cff81af56886
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child.bin
binary
MD5: bd09ae31284f5f39c9a1bcc966ee4992
SHA256: 5bff27b82aed4dfefa851620f78a7b6ce97825e32ddaa8e4f96b9bb950801760
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child-new.bin
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache.bin
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-new.bin
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache.bin
binary
MD5: 110044aee68e17dea49e711d1759fe87
SHA256: 4938a0218073e78135c24ecead9adcddc0ebef5d04ad222ba388cc894b6db4f9
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache-new.bin
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 7ade7ae17e065dae4108fa9016a680dc
SHA256: 1d9a627111a92ddf742de51045e79f375995c40f7527d9c5b8f774967252f97f
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D67CE4F0ED678E14BFF36BED331AEC61E699458D
binary
MD5: ac3ae7e0ab95646711365e439a840008
SHA256: 0229278f7d159a37769d5d94aa38ff4f218e973563852fb0730f3d2e10ace716
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\34A4A76A1847E032AF1B09BFFAA3D3E974215875
binary
MD5: ec49dc692bc57356e7984fd6cc693bd7
SHA256: 655e2824f8382786b2522841d1779f38ac689e65a1ca246c3ddf395d749f9e4c
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F66DA58F75D2FC43F25AFED419DA8B89503D31C6
compressed
MD5: 9742b723adbab4e6c796e500dc97ec5a
SHA256: 65ac38d4f26f0dec92a2f56abff65f45bcedab0b2e727a2cecfa97354eb2187e
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 8cd00a3523d2792fbcb6390e9981c82c
SHA256: ade60dc1917ec281f1386841561818624f5263fdea1abb3818d806fd113586ee
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A291F2E2E89C9563798DACEC2DD080DCE07274F0
binary
MD5: d15d39c35c33a6bd76aec3f7694ecbb9
SHA256: e2f3889b3c74d0462f51708e771985598fd8fd3e91176647c635c87bfb30dc85
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\92AF719138D2C446D3B4AE1283C845D53F84CE91
ini
MD5: 860f468c985403115f4cbbb5a3af923c
SHA256: 8b451f35f2bca807b1f3eaa9cf3fb6443f532c66db6cd35598aeba838049b47e
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\656EDD1F3D0420D8452D352380C95BBB0693D217
ini
MD5: be797d5d842c2fa54ee0faca9c657494
SHA256: 54fe8edce5f8a79134799f48a4e473794fe3391b4953f4dc71fb35f964f9e1b9
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9D1B2C572DE3F79AEB5DEA4C2A07FA7F17FA4BA5
binary
MD5: b954929656961362d1242860f616ae3f
SHA256: deb564dc76bb0997010b581d41abdeadd1174ad9b886cabc8ba2b7708e94333d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F702BBC9CEB365B10AD0AB686AB2B946FAA34E8A
binary
MD5: 20f6e44046e82d1a970eb5158cfca1fb
SHA256: ff4c293b37e2dd71f45e9f74947969fbb15d29ab0c934fff97358186f87fa262
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\78389E1169185A7EF0D7CE5EF9D6C6A5DA769E35
binary
MD5: b45364e3c0db1d3b931fd842eb1d0e43
SHA256: b5b3d8922feaf613a459cd83e349578815d62bc45d19636611ac54949d25b9ac
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EAA9E407DEA8F543543FDD541ECA33D7D2A471B8
ini
MD5: c28516703a46123fa2e5854ceaad3eab
SHA256: 8a6bd921049f34566d3f227cd2244a5422001ce98760a603e2b77850d7ab5d39
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EF499B8DAE65AFCE9D5E59D6C7D68F90439CD8E9
ini
MD5: b2e31c8790fe51e8479ddaa54496e8db
SHA256: d33f2f7dc1f26321d96941d8c1ff4d3a9955218883a85b117264e088e4eada87
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5E7DF9285279490E97F0E99ECC1F3A558BA144D3
binary
MD5: 580b941629cfc61246acb3aaac3c85ce
SHA256: 72ab0a714776a5c54c8120ec51ff1fc1a00a772af8530839c52b3f5659bce557
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B0C98533D97F19A08A467DB7F6C4F01F78EE98AE
binary
MD5: ec600fb159469a1c0a8d4eb54d86f34a
SHA256: 713bea48ebf09d3f21bbbbd31b7e74f04f4d69ba0a8f514c43ace45ae6848a7d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B013EE4ECE0478EA3E7F81205859C972813904AE
ini
MD5: edbcea8f6fe3da8dc2a1fb03de83e33e
SHA256: 9b0d7edbe96baca1f58d58e19902c3dadd26f8af81af6a88d1210a5b4eced4bc
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4990185DFB00A48AA1F28C363162E5FEA76D39CB
binary
MD5: cdbc6a9307ea23eddead3a70ce9bd964
SHA256: e5822bb758f0f614a5eb9ca6d93e81d83dc3a630e56bab7bfe6b5d4fedc7e362
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\278FBF864C754AA24DF5A3D70764C93733D7666C
binary
MD5: 4fbe662999d57d4b2a95964a3f0e15a7
SHA256: 1bc1f35ad1e1bc3844712126e7d3022e78087853d3e99bfd2dfb0bf82c9dc235
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\revocations.txt
text
MD5: bef8ec74021a23512d2724a28c7dffa5
SHA256: f3f0fed4885bef62a9e666dd47c41b76adb1bd63a2ab14c30e524eb5d91046f6
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\revocations-1.txt
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_TkyUw34ug9r41Hm
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.sbstore
binary
MD5: 65e942614eee70680464ac4be75019fc
SHA256: 34395085da32c8b4efe9959e3b0d756b43ffed17694d66f39b966cd331bd9a94
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1EBAB5A7F90D972FB4823F5A4AD17634E0869840
image
MD5: 12107085a60ea1275087930984dcf9e5
SHA256: c1e5815903c9df6a3725b748ee5ce224c37effa8af3e41690cfbe2ae8c1b7e88
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.sbstore
binary
MD5: e2cf527ca7550b7e7bdf7311e483a2c3
SHA256: f1e07b1d717433f47073dc54a7d98e3e87b3d0fa88e53466f93ea544af885d11
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2327E7D8EF9748D0F42C4E2D0FE1D1D5681737E0
image
MD5: 8cebca72256fe20f24ffcd705fa1b1f1
SHA256: 5350cfb7294cdc422b2614c986a7d449683a5c3449fd0506c80d4b9c900fb143
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4FD03B9C48B44DF7A7698F9218958516EED8EAD4
ini
MD5: 591f96f9ace6d054e0efdd0340f904c1
SHA256: 378eeb83bda90020090b1988aad35e29bfbf736e7160550cb0c9aa64bbc6aa32
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E2DCE4EB684B0ACCDBE709164CF6FC6965B1B3E5
binary
MD5: adce61a86414d477be9612490991a363
SHA256: b2d9074e56847c3427b18e08a2e79edf72dd752ae406bda1c534ce953f0d5602
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DBAADDBE936AB2F853A9CA618FF84448E7790B44
cer
MD5: 67e451d98e341124aa25d86c16f625a3
SHA256: 68764d79bfe91dc6e4274303053c85ddb5d297e2ccb4940dc5fd5eba2abef606
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D9A56867745CAC5E27CA8DD0F8A1CA39E87AF18C
image
MD5: 73fcd59d8710264d362be1f3cd19a4a2
SHA256: 011e5a37d9794737c523899d2da9628625a52ed40f6ae8fa0c432606a4b5f6a0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1C6CCC1147D2E73EE52FD6F6459CA7ACAAF51631
binary
MD5: 95e67d88f297a5e0ab0ca6756d7287e1
SHA256: 41e531eb33af9c5b200cf8c35c25f0f03becb04b4d3f2d5a86f6b8d4e4e053f2
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AD8442F2F706BE9C616BC12193175EC03133FB21
woff
MD5: c94e1cb104ddd66ae964268db161184c
SHA256: 7cdfc99cb9fa12ae556fca0f5b18c0a95d0dfd076a23b6342264c40addd4bbc3
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AA83FB72D75A86ABFBBEC0663EC02CD68A1A879F
ini
MD5: fc3e6183814538cb31e092f4484997e9
SHA256: 232f542a653533113b799f442b9b857cedbaf71ed8475af3301e8bba902a0521
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A90935F6BEED6F3EAB2EAA0C5AEDF854E101381A
image
MD5: 1445ea26aec4b9a6794862af44ac02e5
SHA256: c618ae3adbf6c70e076e0862c3188b6cee096a56a02ed566b20077abbcf184c3
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1D934245BFF92F546D1D205CC7BEBD74CC72A72A
binary
MD5: 1cf8e3eeeec1db152437406fdc58035c
SHA256: 3697f23b2ceb89ea5cc13cb6365cc9fa87d40d6aba8982493b533ec6f53aec69
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 51bdeaf301e23ecc3c167cd3f7576724
SHA256: 78032b70bae54ab4bd95fefc68cc50c071069535babc885fabda5a8c7398973d
2728
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_6KM8D4HTj4ReY1F
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DBE87DFEF0B0B12E4A64527CB22258636B5357FB
binary
MD5: 7211cc5cc5194669c45c92db71623413
SHA256: 3a3ee0f8e37281b9f427571aab88b95a034d4a9459a22b5ea35762d90db557e2
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CA733E5DA3E77E1E4D3201EEB88563E2F62E4A77
binary
MD5: 763a2feb68a53467515c6564c5da5151
SHA256: 5be368a5992105dde42cb8229a94b281b26e1a1a8e852fd8ce0f86a8362a055b
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0A64B47830725A593DF670D44359CF34968FB91E
binary
MD5: 23d2649f20af952114d6f8f76015b1a7
SHA256: f62c1f5f1b7ed47db2841b6dbdbc502a2c383e22bc5a52f0dfe9b6ceaba4dea1
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CF3B415FBB7E73895DE56B4289E30C81D1F33305
ini
MD5: 1b576a867792402618ef9f2d204dc16d
SHA256: b8d281d2e818d060271ce8e83b0a2a3eae41b88b86e8466dc738aa264fce617b
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\59F2EF82A82746CB17A580B7DBA602C40DCBF695
ini
MD5: 3faa2587673b5689f564561fa3c6a38e
SHA256: 4c0ae8717921bb9830f120e076a1a822aa1f0e208555f0c249b1bbbf2f6fafb1
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\399E1BD9C9A488BED4B2E1590043930067A8162D
compressed
MD5: c9ae55d96224d59d782e71f587fc2937
SHA256: 98b6ab831b9cca1209d8b2c4061ea7ed25c440413a6b4f7eca2e50003b8389d8
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4422D16E945B1F8C85B8046F66052D4D2F734A48
fli
MD5: feb9042275330de5d955934c97cddcd2
SHA256: 9f4e560d58f461b88cf931b25bfd3ab1c0d69aed613ed1ca665512faea32d9ec
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\354E476DCC21C47C698CE178277C5226F25EC53A
binary
MD5: b0c5dba4837698ad799a68792b0b9879
SHA256: 2add036458e4d7c23230ef9634ab297cb83aefc1c0d528c1e380e742cdd648fd
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9F259D8023AAB0404FBF5D2EB5D1A138C385C3DC
ini
MD5: f7877bd16cf7444eefa2d12fe2dc5acf
SHA256: fd5d9151a158aaa69e81b8d2004c83ab12a3c6b3dc9c4484b78599bfaa6dbb2b
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2FA5C89D0D9ABCD091D91B5090B9B76CFC2AC9FE
ini
MD5: 862b49de88fcb268cae7c8e7e2e8bc9f
SHA256: 859286c012eb83bad77c4113861f80d3f6e9ba8bddef936cfa528815ebd53e0e
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AD312E4CAC2326259A0C87FB82935BC7444987FA
ini
MD5: c56487e0a83abbd4bd6f2ef1d19f461b
SHA256: 16d92e8be67a6e1cac49d57f4ef6895821ff112509f17bef3dbaa831a9b7c9c1
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: a694111fb6c54273933b9df5580eeba6
SHA256: 4ad4ff007aa35a4142d4deaea588b81d5c15e64525b7d0c2e08ce7673d7ce784
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CEFAEAC62DD79282C5A5E1CE4E8B99882C64AF96
ini
MD5: 5423eef0b4791fa24860937a93e14f4b
SHA256: 8b42be35237ecd641787904e5921e18c30c48e71288fb49ee3a5a269ba9855b6
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5C321C02AE1A515C477F171B5BAE5B6D243A570C
image
MD5: 1f560aa5fba176dee9cd24742b789606
SHA256: 259d5b992213870851383868c029ed7cd7544075ce86a8c674e0020f20333e61
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CF6623AE18CBFB04CE79B108A13E5563859405C3
compressed
MD5: e1ea1079d2a9d7a577265c3eeabec10b
SHA256: 45c8514cddd8fda1b83c3384e936a75e913f953bb1c009998c239753b401f2d1
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\458DA244CCDCF32058564892363A20486BD4CEF6
binary
MD5: e9a0d6b4101100f181b14355e6da9023
SHA256: ddd94a0a8a1485bc672a47ccfceb849b525e87ed0d59a608dffce02ed3bee201
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9177A730A75A3AED965C9E07E7094239DD45F8CA
cer
MD5: ee56d9346213b499e3e29e38a42322ae
SHA256: d634aa34e90a70244bf0dfcb215274801af00b69fc73e4ba2c3e5d327754ef7b
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AA83FB72D75A86ABFBBEC0663EC02CD68A1A879F
ini
MD5: 558f89ee8f7c1dd91437b4dd67b1349b
SHA256: f2579541486062b589200c090685b31221cc23a22a68939edddedf4334d4b79a
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5789C6E6F2EEE8877A437708A23D9030CB01F778
ini
MD5: 9e2fd1c87c87eb62b9c1203ba5da6f61
SHA256: 67406418bb37f22b0e2f0ff7b8c08bd2ede662e22cf6c49e4806b300a15640d1
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\ABEAA48B501FBD6A530EC9F222A741DA79987BC8
binary
MD5: d9e5662cc9c6f4dcdac26066ed924a93
SHA256: d0a461c2b0bac71cebb70b4181fb90d0c5525de2b33a0734cef443b3fff94ed3
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9177A730A75A3AED965C9E07E7094239DD45F8CA
cer
MD5: 93648bfa2018941c33ee1b42ddee4a17
SHA256: 2c4de6560ae8f0febaba830ea609251b4c28f416add790dfcf5e68f458e1f14f
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F36BA6E65505B424864C5907B9DCD4FA685F2145
binary
MD5: da0d154985dcb6a28ee6c905b5125436
SHA256: 756a410533e290578844ee35c8d8861a7e3813fe2d8d53ddad7ed81adb94cfb3
2728
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_laTx73eBKQCDttE
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F045228C9D4AFD3E4AAAF789A1D66DD198DB49BB
compressed
MD5: 311490543b025eb8df602a7a39c6541d
SHA256: 09bc78639961bc8c6a97b9934d3cc69983a635d2fa5311d31e9169e9d3137502
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0BFB84A219FD97C44AD72779F1509F48FA8E30BC
compressed
MD5: 21c35f1ac5d8d59e3c7532cd14b538d7
SHA256: 336f136b21865ccbcb3d43ded83c69a2e1a8ac465bd38c559720342497c4cd77
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AE930DE120AB637E6E606D3B80A56E9CE24D8966
compressed
MD5: 52de1ea023e5a32cf68cb97adf783f22
SHA256: 33d1385dd5d6fa5da3fbe87cc872fde9560f5d9e10cdb5a7d5d663f1625d7d8e
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\18F58D7C2816D8F2192CC4E6103B4BF7F979F090
compressed
MD5: 1d2d75c5e20a351479f263c3c5582110
SHA256: e54bd773bd4e429a8a58aabfc1bc2a83afd5e5fd34c6cc7a9a9eb401bd5ea2d7
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8BB2C41ECC5093F6C1611C3ABB47C469E6E86BBA
image
MD5: 12248128b3187afca536c03502dc1f15
SHA256: eecb1674a6be2c53a7caa4329fd05a6c8096373e6e2ad8b9ce88789b68b8baa0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1ABC569D5F6639958C97448D41F45A09D72D7401
compressed
MD5: 8811ed3428f4036c09a21a81123b5095
SHA256: 86bb2e2fefaa89e9da347deb144a6fe9acc7fc6a0fb04a350b5f75ea4e80fed9
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\ED112FFC1043040EA4B7FE49FAE61A32E9BA7A8D
compressed
MD5: 71f6f282bcdc6e6e36d872c799512214
SHA256: 49daaac04651c6954d008357669d86683c254a570981f04df8b689ab835a169b
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\11903
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9177A730A75A3AED965C9E07E7094239DD45F8CA
cer
MD5: 0520bb22b5402ccf963988d70a41062c
SHA256: d31a21caaa8a029d9b2783226bfc1cfed6ec4aaba0d9a8ae13fb901784acceaf
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 6caade857fa22b21ca99313b6508eeb0
SHA256: 27d6ea773f74aedb36c4a64b1d6c590a98aed1ab3b2e5b2f05ebec6d2125736e
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\20389B09730504F72FC74211F1E3B3EDD49F6C91
binary
MD5: 0144b1c2a7128bf2d27a45819c9c84ac
SHA256: 6edf2cb80cef182c5760b44c52aa1ffe327d5621cb75dab2576a2e88429727bf
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9177A730A75A3AED965C9E07E7094239DD45F8CA
cer
MD5: a52e8f7d1f52580a8676f602b44cc8fc
SHA256: ad6058d62a8fa7b3e8fa81531e250e4d11bdba600c4da0f2a00bf8ba5a1a30d4
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\ED4CE6DCD5C1EA4EBEB3F5CE4968C13FBFBA7575
binary
MD5: 6ad7f7ab0b494cef9405a57968739dca
SHA256: 1a5f257ba5b6b1e36ec19b43704903b6bc887e96cb484a981d6eff690a5f3e98
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AB423DCD1B1F2AC64DFC45A9DF00554A51D532F5
binary
MD5: 770700855d27aa621467a5882536e22b
SHA256: 7f1ba18c09c6bc9316aba5b00cf8153732fa4d29f86edfb2b9b9bc954dac40a7
2728
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_DCNoCVTok9incML
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\search.json.mozlz4
jsonlz4
MD5: 4974dc02ef2a9b11c9489736e9748de7
SHA256: 9e6e3729c55c54f4af0c6580f730a33c53b41622e28bc317a6b4cf4e56138b95
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9177A730A75A3AED965C9E07E7094239DD45F8CA
cer
MD5: 80eed3774d03c27e880a3f556c64df43
SHA256: 889a273cd1649f364cc5c053e0cf9907c26350df25b944efb40bbc05e87c45e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A5D93CC48B83C8124FEB6A2E9448677EACA5BA86
binary
MD5: ce8f4dd86c7c77c871b3c1e422cedbf8
SHA256: 3a8340570b023ee71fbd921aee74cc952519b5cfebc7003441876ca22550ff58
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\search.json.mozlz4.tmp
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\9164
binary
MD5: ce8f4dd86c7c77c871b3c1e422cedbf8
SHA256: 3a8340570b023ee71fbd921aee74cc952519b5cfebc7003441876ca22550ff58
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\34A4A76A1847E032AF1B09BFFAA3D3E974215875
binary
MD5: 782c8dda82684f3ebaaf74b66475c69f
SHA256: 94168461040c2e74c2dde433ac1fd91c9124e116dd3214b214afb732944f2030
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\17D72880C5C0D98A7A83B9690CF5EEF92BBF29AD
binary
MD5: 305f605cfcb6ea98d2decf7c4d625ab8
SHA256: 73fbe214b70748747c2f2933324928ee00c7ca51678a83d549769e027f115744
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9A3EF8133F0FA6C3DE8D839A13E7E624CC01FBCC
binary
MD5: 3471c559e284fe34fbcea4b1b053d4b8
SHA256: 3d389b26d2a297959e37fcd918e241465f68f78d73a2796de2d7afebad3f73e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\208A0E94C7E7ED6EED7DE6F5956EF79B9B0EA10A
binary
MD5: a669ee1f546e98802021a1c3d299aace
SHA256: 0bcd3c49e0b18719c7e9801d799aaf0cebd3a976a10cb833cd0ad1d5a06633d8
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\56DFD86F9B969E48610230296643D84DDDDBEC4E
binary
MD5: 621b829efca75a3d12b41f4b3e80c989
SHA256: 1beb645981ad65e4fe28651e8a0d61da68f806d53ac9011cc07d0ededfd50a0d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\402C0CE4DF91187CB5A00B5B605444BC41F64477
image
MD5: 7621b309082873b5a70f93aa100b338b
SHA256: d7f60e9897a4ff3018c3103c048f9531c462742052a3686dd692e6c69f1252f3
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296
image
MD5: ee71e69624e7480657e0d506c5310d4e
SHA256: 91e565daab2c98da4c1db42074d9919134cf932be9eba56dd2fcd7d3f8c5583f
2728
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_tR8AjbevhjWk2Sh
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BE0CCFDEED023C83BCD6BAB4E7FA39C986B3EA5A
ini
MD5: 79ecd8fc043d8c85c0b54bfff8d589f4
SHA256: 3de60ba3f453b5db61b9aba3ce493e9938d17ba0617816c6dd651b9ae6933115
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\20822
binary
MD5: e2ad220e176539d8470f5661a7777caa
SHA256: 48f6f4550310d8a7a573960035008a92744fd448be98fc836612c5e9c5e51938
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EFC6F1067CC22F353AF366D35C2171715AA8E67D
der
MD5: a4b5af199dd6d9de9d93f66e3920a3be
SHA256: 2fa085c0e39eaad29a0a6b94bc8a9b471b03b621da5466760f0e6f6bd047bf87
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 544f3ad5c85ec2f41813c091e140b278
SHA256: 11dc8b4c1b425fbbc78d9bf103ef3c56db314d4a1804e03d636228d947a3490d
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\previous.jsonlz4
jsonlz4
MD5: da5a84a2615e68822fa04e81e66ea403
SHA256: 1c43e3fbd8cf850c863bba57a263da38355b9021b4a9bcc9f1d59ecaf9841ce9
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\addonStartup.json.lz4
jsonlz4
MD5: 65a8568f72fdf05a592210c52784c82a
SHA256: 353279aec0402d3777cd400ecfa22ece3e3e882cb1e57056965db44bd1306465
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\addonStartup.json.lz4.tmp
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: d9b16c711c495561ed98495dfda492c2
SHA256: 30555a92188638df5a7bd1e6e08487122f2a7f60a5e93d07143f1181ae77a4e1
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B06E1D29677C5C3714B3982BF0DADEE29A0C9B96
binary
MD5: 750acf880a361873a2687a8fd5e4def6
SHA256: 9bbd18e88d184cee16652d1bf1d2603a081ace21721911aae0edfd204f935cdd
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B76AE19835CDEA86B521946719284134832ED132
binary
MD5: 5a3e7851c136f21a60340e83e1c7527d
SHA256: a8232c8e9e7310d304be3003ecafc91478de5dbfbf2646e8e0d98ee6047eb967
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9C13B9BD719285932DE5CE59ED89BC53AB3928AD
binary
MD5: f95f134359c885711eb21d5b6e920b4f
SHA256: ffaa5f93f325ac16ddc8c4711ebeeaf73835367cbb14bac22c3898d9a77c908d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F73B38D97FF76D215900408D7C958636A65A330F
der
MD5: 35fdb3f11e5b1bedb057a94ae20fe158
SHA256: 5c68c83b682a958c50364c7763724cdc57f770f55543228fce0243196c4248b5
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.sbstore
binary
MD5: a5695cc64d77967232b0c1344c6e72b3
SHA256: 042a22b8681d754671d2018ba109b31a53ee3728d48c6379043f8e3394e7fbad
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.sbstore
binary
MD5: 3d1ce5e50208f0cb3b979186043a548f
SHA256: 1e13d05d482c3d533dc6035af2b2d6e84749412a5748d1435b70cec8b312340b
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.sbstore
binary
MD5: 3675254e341df799d4307c1f59109185
SHA256: 23d108134bed6099793f7dd6b8b6e62081ec3b945efdbc7c5e0e779fd9b82f98
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple-1.sbstore
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.sbstore
binary
MD5: 95f28ede25c301301f25fbbd9a3c56ec
SHA256: 87763df78772f7d750b0fa5a31eec23e931fd3bd1cbb33beddfc61889da36478
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.sbstore
binary
MD5: 051fb32dece757ba112ac36dc72e3a91
SHA256: 0806d98fb3de55f75d7c0b17e26146567e08c483031526659a4a35d09b97ef19
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.sbstore
binary
MD5: d6acf2573e12afdd7939568804d3fcc1
SHA256: 5525cbf8f8dc41d19ac632ed324e55293a510ae0eeba16d0e3f33c707aa58a0c
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.sbstore
binary
MD5: 2ad4445da23a8e50d667c09150cf1876
SHA256: c1550f9dc8f675c7ff2c896ee91c839e4e2b243e759d71c128521c17f53e91b1
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.vlpset
binary
MD5: d9e28d043d05a069ac7962f181a05337
SHA256: efbb9ada8e5f662779444e4de88ce944036b7c73d61acfb70239f809dd153aa1
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
binary
MD5: 6ee2fe4d5c3460929a4eec3138d76e8e
SHA256: 1bd0d3301b97fe608243e61c8fa114cc1ae9b69c0622a10cafe5cc1814df3b7a
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.metadata
binary
MD5: c0ff29e2429d6a67594d829b166b9d0b
SHA256: a8ab69af442ae86af43f2a3bf22b91341377be23874762de01e3e71ef08f0318
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.vlpset
binary
MD5: 8996548565a96f6ba34bc8317fb4f09e
SHA256: f760f51c58a91fcc264b8d27f610372ad510209eae6d0911e0ac236e7405fdc8
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.metadata
binary
MD5: f57521d4d31b44fbbb74ba8f2441f52f
SHA256: fd6f2adcf2bce0ac48f15b6a67110e24ec8d24a566422512df2269f2cfac7a0d
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.metadata
binary
MD5: 498dae4e538658a57f464748f2dabfda
SHA256: 8778f52cd9cb4f4787bf7ba18006d212f8c3004652d163f7786556a8eef3a067
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.pset
binary
MD5: 7655fffe7cfbe1ebf96afea5fe2e1376
SHA256: ff2f663c4e453706b7817109f6a43e8b3389e8cfb1b7d64aace2bfba45f3a359
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D5AA82A6FE5469332FC7E25363A272EB570F88F7
der
MD5: bc96aaeffc24b3ca1213141ab4a327bf
SHA256: ee4bcd37d9e5bee4c984e91a6e7576fc1f1976cffe3ba6d6f4e80f5b9b38f0de
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.sbstore
binary
MD5: ba0009932844173bc8f9af264229df24
SHA256: 66d1c00c04d86e313e9a02775cdf906b1be8d4cd6bef423a1b9e21cc4e9f50c1
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.sbstore
binary
MD5: 6f85bc4b2ecb49e26b0bd83a821065d0
SHA256: c0b3bc9b3dc507ab654caf72d13c3aefa58c9b13b1e4d14dd8816712d80a7e54
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
binary
MD5: b4d69f529bf6d261075d04c6a5c56158
SHA256: 2794c0426aa721104df6a8615d57a251af30a79865cc69e369ed41cae4ea4ee8
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.sbstore
binary
MD5: c921d8e98fa01b4f303481e112202e92
SHA256: 4ef1038730ec8bc7206713c29a936768831b922c5e6c83355fd62d7401d8c1dc
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.vlpset
binary
MD5: 93fdf288da71b455cfcb53f9e78add2a
SHA256: 017ed2622f8e5e1d72df4bc872bcf81ccfea9681aede1afdc7f3ddac800b0cf5
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.sbstore
binary
MD5: 04824a1f92353f43ebb9e7f74b7476fd
SHA256: b48e58ebab82e4c376f16150a3fff850c1111ff1f5985d68819cfd6f0db159d2
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.sbstore
binary
MD5: 0e8fe60ccd7e9b4c32589a5743a95302
SHA256: 2b124d4026850a3cffd28dbacb58aec28f7dcd4d40bc14e52bbe96d60ce4e749
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.sbstore
binary
MD5: 4a1220fc03e11726f09e9981834345db
SHA256: 6ae7fc0fdbe217104f4034bf6a580a461106b50309abccff6e309124dca5ef39
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.sbstore
binary
MD5: d886a47c89d9c49c795da345bc236990
SHA256: a03c5e2656d2f292bf5794c8eeb8d223cd6ba4f4bfb2ed1f325460e879d0bcf7
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 57616a70e7455df0382da1f7c0bd2608
SHA256: 7c8ce3145a39e831638418f00e57760aa905a243339527d37c7aae35ec4edeac
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\search.json.mozlz4
jsonlz4
MD5: 6d378e0d40b6eaca22c8bce899a1c5c1
SHA256: ada2467b2477aceff837ac7820c435ad1ebbe844b2da31c7ab9ae8d010c7a639
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json
text
MD5: c4ab2ee59ca41b6d6a6ea911f35bdc00
SHA256: 00ad9799527c3fd21f3a85012565eae817490f3e0d417413bf9567bb5909f6a2
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json.tmp
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json
text
MD5: ea8b62857dfdbd3d0be7d7e4a954ec9a
SHA256: 792955295ae9c382986222c6731c5870bd0e921e7f7e34cc4615f5cd67f225da
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 354459382f30b8994109c88659dfa1f3
SHA256: e3e8e2b7e7eeca231620d83c70fa5a926e8b9ce74c51f595f71191dc0b50527e
2728
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cookies.sqlite-shm
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-current.bin
––
MD5:  ––
SHA256:  ––
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child-current.bin
binary
MD5: 5027177f513cdae07db2330e1ded5934
SHA256: 0c53f16051e738287a4612f68e296238087627e594cfd6ddfa1fecc2e998328b
2728
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache-current.bin
binary
MD5: de9496aca551ade408ef6466a11833a1
SHA256: 8f9c7fdb3e0bc01024e43a8e242468fc4dd4f74c725e32a883571635203dc10a

Find more information of the staic content and download it at the full report

Network activity

HTTP(S) requests
11
TCP/UDP connections
95
DNS requests
165
Threats
2

HTTP requests

PID Process Method HTTP Code IP URL CN Type Size Reputation
2728 firefox.exe GET 200 2.16.106.152:80 http://detectportal.firefox.com/success.txt unknown
text
whitelisted
2728 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2728 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2728 firefox.exe POST 200 216.58.206.3:80 http://ocsp.pki.goog/gts1o1 US
binary
der
whitelisted
2728 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2728 firefox.exe POST 200 2.21.242.236:80 http://ocsp.int-x3.letsencrypt.org/ NL
binary
der
whitelisted
2728 firefox.exe GET 200 104.24.21.54:80 http://pngimg.com/uploads/email/email_PNG20.png US
image
whitelisted
2728 firefox.exe GET 200 104.24.20.54:80 http://pngimg.com/.well-known/http-opportunistic US
text
whitelisted
2728 firefox.exe POST 200 216.58.206.3:80 http://ocsp.pki.goog/gts1o1 US
binary
der
whitelisted
2728 firefox.exe POST 200 216.58.206.3:80 http://ocsp.pki.goog/gts1o1 US
binary
der
whitelisted
2728 firefox.exe GET 200 2.16.106.152:80 http://detectportal.firefox.com/success.txt unknown
text
whitelisted

Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID Process IP ASN CN Reputation
2728 firefox.exe 2.16.106.152:80 Akamai International B.V. –– whitelisted
2728 firefox.exe 35.164.109.147:443 Amazon.com, Inc. US unknown
2728 firefox.exe 52.41.171.126:443 Amazon.com, Inc. US malicious
2728 firefox.exe 13.107.42.12:443 Microsoft Corporation US suspicious
2728 firefox.exe 143.204.214.5:443 US unknown
2728 firefox.exe 35.161.239.106:443 Amazon.com, Inc. US unknown
2728 firefox.exe 93.184.220.29:80 MCI Communications Services, Inc. d/b/a Verizon Business US whitelisted
2728 firefox.exe 143.204.214.45:443 US unknown
2728 firefox.exe 13.107.42.13:443 Microsoft Corporation US unknown
2728 firefox.exe 143.204.214.46:443 US suspicious
2728 firefox.exe 172.217.18.10:443 Google Inc. US whitelisted
2728 firefox.exe 216.58.206.3:80 Google Inc. US whitelisted
2728 firefox.exe 2.16.186.25:443 Akamai International B.V. –– whitelisted
2728 firefox.exe 2.19.37.83:443 Akamai International B.V. –– whitelisted
2728 firefox.exe 72.247.225.58:443 Akamai Technologies, Inc. US whitelisted
2728 firefox.exe 13.107.6.171:443 Microsoft Corporation US whitelisted
2728 firefox.exe 72.247.226.83:443 Akamai Technologies, Inc. US whitelisted
2728 firefox.exe 52.109.88.115:443 Microsoft Corporation NL unknown
2728 firefox.exe 95.100.140.73:443 Akamai Technologies, Inc. –– whitelisted
2728 firefox.exe 18.236.49.179:443 US unknown
2728 firefox.exe 13.35.253.81:443 US unknown
2728 firefox.exe 52.109.32.27:443 Microsoft Corporation GB whitelisted
2728 firefox.exe 72.247.224.69:443 Akamai Technologies, Inc. US whitelisted
2728 firefox.exe 52.114.76.35:443 Microsoft Corporation IE whitelisted
2728 firefox.exe 20.36.253.92:443 US whitelisted
2728 firefox.exe 40.90.142.226:443 Microsoft Corporation US whitelisted
2728 firefox.exe 152.199.19.160:443 MCI Communications Services, Inc. d/b/a Verizon Business US whitelisted
2728 firefox.exe 204.79.197.200:443 Microsoft Corporation US whitelisted
2728 firefox.exe 108.167.132.135:443 CyrusOne LLC US unknown
2728 firefox.exe 52.109.88.2:443 Microsoft Corporation NL whitelisted
2728 firefox.exe 2.19.45.188:443 Akamai International B.V. –– whitelisted
2728 firefox.exe 2.20.21.128:443 Akamai International B.V. –– whitelisted
2728 firefox.exe 2.16.106.209:80 Akamai International B.V. –– whitelisted
2728 firefox.exe 52.89.218.39:443 Amazon.com, Inc. US unknown
–– –– 2.21.242.236:80 Akamai International B.V. NL whitelisted
–– –– 104.24.21.54:80 Cloudflare Inc US shared
–– –– 2.21.38.22:443 GTT Communications Inc. FR unknown
2728 firefox.exe 104.24.20.54:80 Cloudflare Inc US shared
–– –– 104.24.21.54:443 Cloudflare Inc US shared
2728 firefox.exe 172.217.22.99:443 Google Inc. US whitelisted
2728 firefox.exe 13.35.253.124:443 US unknown

DNS requests

Domain IP Reputation
detectportal.firefox.com 2.16.106.152
2.16.106.209
whitelisted
a1089.dscd.akamai.net 2.16.106.209
2.16.106.152
whitelisted
search.services.mozilla.com 35.164.109.147
52.35.182.58
52.89.218.39
whitelisted
search.r53-2.services.mozilla.com 52.89.218.39
52.35.182.58
35.164.109.147
whitelisted
push.services.mozilla.com 52.41.171.126
whitelisted
autopush.prod.mozaws.net 52.41.171.126
whitelisted
1drv.ms 13.107.42.12
shared
snippets.cdn.mozilla.net 143.204.214.5
143.204.214.11
143.204.214.118
143.204.214.95
whitelisted
d228z91au11ukj.cloudfront.net No response malicious
tiles.services.mozilla.com 35.161.239.106
52.89.51.22
35.155.128.5
35.162.117.80
34.223.160.244
54.69.207.70
54.68.132.173
54.186.225.209
whitelisted
tiles.r53-2.services.mozilla.com No response whitelisted
ocsp.digicert.com 93.184.220.29
whitelisted
cs9.wac.phicdn.net No response whitelisted
firefox.settings.services.mozilla.com 143.204.214.45
143.204.214.77
143.204.214.123
143.204.214.68
whitelisted
d2k03kvdk5cku0.cloudfront.net 143.204.214.68
143.204.214.123
143.204.214.77
143.204.214.45
whitelisted
onedrive.live.com 13.107.42.13
shared
content-signature-2.cdn.mozilla.net 143.204.214.46
143.204.214.76
143.204.214.10
143.204.214.32
whitelisted
l-0004.l-msedge.net No response unknown
d2nxq2uap88usk.cloudfront.net No response whitelisted
safebrowsing.googleapis.com 172.217.18.10
whitelisted
ocsp.pki.goog 216.58.206.3
whitelisted
pki-goog.l.google.com No response whitelisted
www.youtube.com 172.217.18.110
172.217.23.110
172.217.16.174
172.217.16.142
172.217.22.46
172.217.22.78
172.217.22.110
216.58.210.14
172.217.16.206
172.217.21.206
172.217.23.174
172.217.21.238
216.58.205.238
172.217.22.14
172.217.18.174
whitelisted
www.facebook.com 31.13.92.36
whitelisted
www.ebay.de 72.247.226.12
whitelisted
e11847.g.akamaiedge.net 72.247.226.12
whitelisted
star-mini.c10r.facebook.com 31.13.92.36
whitelisted
youtube-ui.l.google.com 172.217.18.174
172.217.22.14
216.58.205.238
172.217.21.238
172.217.23.174
172.217.21.206
172.217.16.206
216.58.210.14
172.217.22.110
172.217.22.78
172.217.22.46
172.217.16.142
172.217.16.174
172.217.23.110
172.217.18.110
whitelisted
www.wikipedia.org 91.198.174.192
whitelisted
www.reddit.com 151.101.1.140
151.101.65.140
151.101.129.140
151.101.193.140
whitelisted
dyna.wikimedia.org No response whitelisted
reddit.map.fastly.net 151.101.193.140
151.101.129.140
151.101.65.140
151.101.1.140
whitelisted
support.mozilla.org 34.213.134.214
34.209.95.119
whitelisted
www.mozilla.org 104.16.143.228
104.16.142.228
whitelisted
www.mozilla.org.cdn.cloudflare.net 104.16.142.228
104.16.143.228
whitelisted
blog.mozilla.org 35.197.18.156
whitelisted
prod-tp.sumo.mozit.cloud 34.209.95.119
34.213.134.214
whitelisted
mozilla.wpengine.com 35.197.18.156
whitelisted
spoprod-a.akamaihd.net 2.16.186.25
2.16.186.33
whitelisted
p.sfx.ms 2.19.37.83
whitelisted
a1531.g2.akamai.net 2.16.186.33
2.16.186.25
whitelisted
e9244.g.akamaiedge.net 2.19.37.83
suspicious
onenote.officeapps.live.com 13.107.6.171
whitelisted
c1-onenote-15.cdn.office.net 72.247.225.58
whitelisted
e7204.dscg.akamaiedge.net No response malicious
b-0016.b-msedge.net 13.107.6.171
whitelisted
c.s-microsoft.com 72.247.226.83
whitelisted
c1-officeapps-15.cdn.office.net 72.247.225.58
whitelisted
e13678.dscg.akamaiedge.net 72.247.226.83
whitelisted
onenoteonlinesync.onenote.com 52.109.88.115
unknown
prod-eur.onenoteonlinesync-onenote.com.akadns.net 52.109.88.115
unknown
site-cdn.onenote.net 95.100.140.73
unknown
e5684.g.akamaiedge.net 95.100.140.73
unknown
shavar.services.mozilla.com 18.236.49.179
34.209.199.162
52.39.168.38
34.213.241.62
35.164.178.120
35.167.176.126
34.213.214.155
52.32.91.14
whitelisted
shavar.prod.mozaws.net 52.32.91.14
34.213.214.155
35.167.176.126
35.164.178.120
34.213.241.62
52.39.168.38
34.209.199.162
18.236.49.179
whitelisted
tracking-protection.cdn.mozilla.net 13.35.253.81
13.35.253.79
13.35.253.94
13.35.253.114
whitelisted
d1zkz3k4cclnv6.cloudfront.net 13.35.253.114
13.35.253.94
13.35.253.79
13.35.253.81
whitelisted
officeclient.microsoft.com 52.109.32.27
whitelisted
europe.configsvc1.live.com.akadns.net 52.109.32.27
unknown
fs.microsoft.com 72.247.224.69
whitelisted
e1723.g.akamaiedge.net No response unknown
browser.pipe.aria.microsoft.com 52.114.76.35
whitelisted
pipe.cloudapp.aria.akadns.net 52.114.76.35
unknown
skyapi.onedrive.live.com 40.90.142.226
shared
c.live.com 20.36.253.92
whitelisted
c-msn-com-nsatc.trafficmanager.net 20.36.253.92
whitelisted
odc-common-emea-meta.onedrive.akadns.net 40.90.142.226
whitelisted
ajax.aspnetcdn.com 152.199.19.160
whitelisted
cs22.wpc.v0cdn.net 152.199.19.160
whitelisted
c.bing.com 204.79.197.200
13.107.21.200
whitelisted
dual-a-0001.a-msedge.net 13.107.21.200
204.79.197.200
whitelisted
aquinocalhasetelhados.com.br 108.167.132.135
unknown
www.onenote.com 52.109.88.2
whitelisted
prod-eu.reverseproxy-onenote.com.akadns.net No response unknown
cdn.onenote.net 2.19.45.188
unknown
appsforoffice.microsoft.com 2.20.21.128
whitelisted
e1553.dspg.akamaiedge.net 2.19.45.188
unknown
e2682.g.akamaiedge.net 2.20.21.128
unknown
en-us.phish-error.mozilla.com 63.245.208.212
whitelisted
safebrowsing.google.com 216.58.205.238
whitelisted
developers.google.com 216.58.205.238
whitelisted
redirects.public.mdc1.mozilla.com No response whitelisted
sb.l.google.com 216.58.205.238
whitelisted
www3.l.google.com 216.58.205.238
whitelisted
www.antiphishing.org 52.41.3.203
whitelisted
ocsp.int-x3.letsencrypt.org 2.21.242.236
2.21.242.204
whitelisted
a771.dscq.akamai.net 2.21.242.204
2.21.242.236
whitelisted
store-images.s-microsoft.com 2.21.38.22
whitelisted
pngimg.com 104.24.21.54
104.24.20.54
whitelisted
e12564.dspb.akamaiedge.net 2.21.38.22
suspicious
gstaticadssl.l.google.com 172.217.22.99
whitelisted
fonts.gstatic.com 172.217.22.99
whitelisted
aus5.mozilla.org 13.35.253.124
13.35.253.12
13.35.253.69
13.35.253.15
whitelisted
balrog-cloudfront.prod.mozaws.net No response whitelisted

Threats

PID Process Class Message
–– –– Potentially Bad Traffic ET INFO Observed DNS Query to .cloud TLD
–– –– Potentially Bad Traffic ET INFO Observed DNS Query to .cloud TLD

Debug output strings

No debug info.