General Info

URL

https://eastexch030serverdatanet.z13.web.core.windows.net/?https%3a%2f%2fwww.office.com%2f&ui_locales=en-US&mkt=en-US&client-request-id=aa389f99-15f8-433b-aaa2-5583dfb68c1d&prompt=none&login_hint=mcox%40syncsort.com&msafed=0&username=[email protected]

Full analysis
https://app.any.run/tasks/4458edd4-e2b5-435b-81fd-eebac32a0290
Verdict
Malicious activity
Analysis date
6/12/2019, 08:07:18
OS:
Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distored by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.

Software environment set and analysis options

Launch configuration

Task duration
120 seconds
Additional time used
60 seconds
Fakenet option
off
Heavy Evaision option
off
MITM proxy
off
Route via Tor
off
Network geolocation
off
Privacy
Public submission
Autoconfirmation of UAC
on

Software preset

  • Internet Explorer 8.0.7601.17514
  • Adobe Acrobat Reader DC MUI (15.023.20070)
  • Adobe Flash Player 26 ActiveX (26.0.0.131)
  • Adobe Flash Player 26 NPAPI (26.0.0.131)
  • Adobe Flash Player 26 PPAPI (26.0.0.131)
  • Adobe Refresh Manager (1.8.0)
  • CCleaner (5.35)
  • FileZilla Client 3.36.0 (3.36.0)
  • Google Chrome (73.0.3683.75)
  • Google Update Helper (1.3.33.23)
  • Java 8 Update 92 (8.0.920.14)
  • Java Auto Updater (2.8.92.14)
  • Microsoft .NET Framework 4.6.1 (4.6.01055)
  • Microsoft Office Access MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Access Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Excel MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office OneNote MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Outlook MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office PowerPoint MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Professional 2010 (14.0.6029.1000)
  • Microsoft Office Proof (English) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (French) 2010 (14.0.6029.1000)
  • Microsoft Office Proof (Spanish) 2010 (14.0.6029.1000)
  • Microsoft Office Proofing (English) 2010 (14.0.6029.1000)
  • Microsoft Office Publisher MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Shared MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Shared Setup Metadata MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Office Single Image 2010 (14.0.6029.1000)
  • Microsoft Office Word MUI (English) 2010 (14.0.6029.1000)
  • Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (9.0.30729.6161)
  • Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (10.0.40219)
  • Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (12.0.30501.0)
  • Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (12.0.21005)
  • Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (14.15.26706.0)
  • Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706 (14.15.26706)
  • Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706 (14.15.26706)
  • Mozilla Firefox 65.0.2 (x86 en-US) (65.0.2)
  • Notepad++ (32-bit x86) (7.5.1)
  • Opera 12.15 (12.15.1748)
  • Skype version 8.29 (8.29)
  • VLC media player (2.2.6)
  • WinRAR 5.60 (32-bit) (5.60.0)

Hotfixes

  • Client LanguagePack Package
  • Client Refresh LanguagePack Package
  • CodecPack Basic Package
  • Foundation Package
  • IE Troubleshooters Package
  • InternetExplorer Optional Package
  • KB2534111
  • KB2999226
  • KB976902
  • LocalPack AU Package
  • LocalPack CA Package
  • LocalPack GB Package
  • LocalPack US Package
  • LocalPack ZA Package
  • ProfessionalEdition
  • UltimateEdition

Behavior activities

MALICIOUS SUSPICIOUS INFO

No malicious indicators.

Executable content was dropped or overwritten
  • firefox.exe (PID: 2980)
Creates files in the program directory
  • firefox.exe (PID: 2980)
Application launched itself
  • firefox.exe (PID: 2980)
Reads Internet Cache Settings
  • firefox.exe (PID: 2980)
Reads CPU info
  • firefox.exe (PID: 2980)
Creates files in the user directory
  • firefox.exe (PID: 2980)

Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report

Screenshots

Processes

Total processes
38
Monitored processes
5
Malicious processes
0
Suspicious processes
0

Behavior graph

+
start firefox.exe firefox.exe no specs firefox.exe firefox.exe firefox.exe
Specs description
Program did not start
Integrity level elevation
Task сontains an error or was rebooted
Process has crashed
Task contains several apps running
Executable file was dropped
Debug information is available
Process was injected
Network attacks were detected
Application downloaded the executable file
Actions similar to stealing personal data
Behavior similar to exploiting the vulnerability
Inspected object has sucpicious PE structure
File is detected by antivirus software
CPU overrun
RAM overrun
Process starts the services
Process was added to the startup
Behavior similar to spam
Low-level access to the HDD
Probably Tor was used
System was rebooted
Connects to the network
Known threat

Process information

Click at the process to see the details.

PID
2980
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" https://eastexch030serverdatanet.z13.web.core.windows.net/?https%3a%2f%2fwww.office.com%2f&ui_locales=en-US&mkt=en-US&client-request-id=aa389f99-15f8-433b-aaa2-5583dfb68c1d&prompt=none&login_hint=mcox%40syncsort.com&msafed=0&username=[email protected]
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
––
User
admin
Integrity Level
MEDIUM
Version:
Company
Mozilla Corporation
Description
Firefox
Version
65.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\kernel32.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\kbdus.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\psapi.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wbemcomn.dll
c:\windows\system32\wship6.dll
c:\windows\system32\cryptsp.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\rpcrtremote.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\winsta.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\mscms.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\d2d1.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\wininet.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\rtutils.dll
c:\progra~1\mozill~1\nssckbi.dll
c:\windows\system32\sensapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\fwpuclnt.dll
c:\windows\system32\explorerframe.dll
c:\windows\system32\duser.dll
c:\windows\system32\dui70.dll
c:\windows\system32\actxprxy.dll
c:\program files\adobe\acrobat reader dc\reader\acrord32.exe
c:\program files\mozilla firefox\mozavutil.dll
c:\program files\mozilla firefox\mozavcodec.dll
c:\windows\system32\mfplat.dll
c:\windows\system32\mf.dll
c:\windows\system32\atl.dll
c:\windows\system32\ksuser.dll
c:\windows\system32\dxva2.dll
c:\windows\system32\evr.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\msmpeg2adec.dll
c:\windows\system32\slc.dll
c:\windows\system32\msmpeg2vdec.dll
c:\windows\system32\sqmapi.dll
c:\windows\system32\bcrypt.dll

PID
2476
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2980.0.232410091\1637758825" -parentBuildID 20190225143501 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - "C:\Users\admin\AppData\LocalLow\Mozilla\Temp-{ce348e4c-7d33-445e-89f9-60108c51bcaf}" 2980 "\\.\pipe\gecko-crash-server-pipe.2980" 1096 gpu
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
No indicators
Parent process
firefox.exe
User
admin
Integrity Level
MEDIUM
Version:
Company
Mozilla Corporation
Description
Firefox
Version
65.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\kernel32.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\mfplat.dll
c:\windows\system32\mf.dll
c:\windows\system32\atl.dll
c:\windows\system32\ksuser.dll
c:\windows\system32\dxva2.dll
c:\windows\system32\evr.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll

PID
2892
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2980.6.1110181118\100154082" -childID 1 -isForBrowser -prefsHandle 1768 -prefMapHandle 1764 -prefsLen 1 -prefMapSize 180950 -schedulerPrefs 0001,2 -parentBuildID 20190225143501 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2980 "\\.\pipe\gecko-crash-server-pipe.2980" 1620 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
65.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\user32.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wship6.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll

PID
3300
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2980.13.1870370291\892492357" -childID 2 -isForBrowser -prefsHandle 2488 -prefMapHandle 2492 -prefsLen 216 -prefMapSize 180950 -schedulerPrefs 0001,2 -parentBuildID 20190225143501 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2980 "\\.\pipe\gecko-crash-server-pipe.2980" 2504 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
65.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\wship6.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\program files\mozilla firefox\softokn3.dll
c:\program files\mozilla firefox\freebl3.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll

PID
3148
CMD
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="2980.20.194826786\1166795236" -childID 3 -isForBrowser -prefsHandle 3412 -prefMapHandle 3416 -prefsLen 5824 -prefMapSize 180950 -schedulerPrefs 0001,2 -parentBuildID 20190225143501 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" - 2980 "\\.\pipe\gecko-crash-server-pipe.2980" 3444 tab
Path
C:\Program Files\Mozilla Firefox\firefox.exe
Indicators
Parent process
firefox.exe
User
admin
Integrity Level
LOW
Version:
Company
Mozilla Corporation
Description
Firefox
Version
65.0.2
Modules
Image
c:\program files\mozilla firefox\firefox.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\mozilla firefox\mozglue.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\version.dll
c:\program files\mozilla firefox\msvcp140.dll
c:\program files\mozilla firefox\vcruntime140.dll
c:\program files\mozilla firefox\api-ms-win-crt-runtime-l1-1-0.dll
c:\program files\mozilla firefox\ucrtbase.dll
c:\program files\mozilla firefox\api-ms-win-core-localization-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-processthreads-l1-1-1.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-core-timezone-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-file-l2-1-0.dll
c:\program files\mozilla firefox\api-ms-win-core-synch-l1-2-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-string-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-heap-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-stdio-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-convert-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-locale-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-math-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-time-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-filesystem-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-environment-l1-1-0.dll
c:\program files\mozilla firefox\api-ms-win-crt-utility-l1-1-0.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\mozilla firefox\api-ms-win-crt-multibyte-l1-1-0.dll
c:\program files\mozilla firefox\nss3.dll
c:\windows\system32\winmm.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\nsi.dll
c:\program files\mozilla firefox\lgpllibs.dll
c:\program files\mozilla firefox\xul.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\avrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\d3d11.dll
c:\windows\system32\dxgi.dll
c:\windows\system32\dwmapi.dll
c:\windows\system32\credui.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winnsi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\devobj.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\userenv.dll
c:\windows\system32\profapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
c:\windows\system32\cryptbase.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\nlaapi.dll
c:\windows\system32\napinsp.dll
c:\windows\system32\pnrpnsp.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\wship6.dll
c:\windows\system32\dwrite.dll
c:\windows\system32\wshqos.dll
c:\windows\system32\mscms.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\mmdevapi.dll
c:\windows\system32\propsys.dll
c:\windows\system32\audioses.dll
c:\windows\system32\wpc.dll
c:\windows\system32\wevtapi.dll
c:\windows\system32\samcli.dll
c:\windows\system32\samlib.dll
c:\windows\system32\netutils.dll

Registry activity

Total events
928
Read events
926
Write events
2
Delete events
0

Modification events

PID
Process
Operation
Key
Name
Value
2980
firefox.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
ProxyEnable
0
2980
firefox.exe
write
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
SavedLegacySettings
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

Files activity

Executable files
1
Suspicious files
131
Text files
41
Unknown types
69

Dropped files

PID
Process
Filename
Type
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\gmp-widevinecdm\4.10.1146.0\widevinecdm.dll
executable
MD5: 7f636be36a85d45a148b0fe13bd311a5
SHA256: 5566c2c4b1839386e1b951b13eeb7aaceb1fb52e9f1cfdbc345c5e4f7b6d9745
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-current.bin
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3345959086bslnoocdkdlaiFs2t%s.sqlite
sqlite
MD5: 4b75b1acc179f08045eb7e9bca6311fc
SHA256: d7d442b5ff4f9feab1c85d6b6f3e44d34e19051dbab0953f7f08057f0b2e4f2d
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3345959086bslnoocdkdlaiFs2t%s.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3345959086bslnoocdkdlaiFs2t%s.sqlite-wal
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\727688008bsleotcakcliifsittsr%.sqlite
sqlite
MD5: 73b3f3fbfaece8a46e420c1e39367b77
SHA256: 86586ef1dc62da363a3f9426b2b4d7c8017c8120ed7df180dc39d3c518dfb728
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\727688008bsleotcakcliifsittsr%.sqlite-wal
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\727688008bsleotcakcliifsittsr%.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1059394878bslnoicgkullipsFt2s%.sqlite
sqlite
MD5: 938becd7ef5e85c7f387a17890283395
SHA256: a5e96b8115728229d2122dbcb014d3c14866603dcecaeb46aa242b4d73e819a9
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1059394878bslnoicgkullipsFt2s%.sqlite-wal
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1059394878bslnoicgkullipsFt2s%.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1725441852bxlfogcFk2l%isst.sqlite
sqlite
MD5: 72bc569fa0a0abf6d29ddc01da8e6440
SHA256: 4f779af3b59c64d8c14e808897e9b080f1062601779cd47ae8984acde8c14c0e
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\about+newtab\idb\3312185054sbndi_pspte.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1725441852bxlfogcFk2l%isst.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1725441852bxlfogcFk2l%isst.sqlite-wal
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\default\about+home\idb\3312185054sbndi_pspte.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3899588440psinninpiFn2g%.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 52df871b31a3f5dce52e00f646ea3f76
SHA256: 5f8307e378c353a00cb1879612b66e5109fbf96b88d0da7d1390fc1a1b107623
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\43B6655E5F16BC2535236452C6E5FF7FB6F2BD90
binary
MD5: cfcfd6a84907926a6df9db1ab8c9828c
SHA256: d70c23e11dbef202893a14264aefb5570ee95df108a3df3f3f89a8b4d4dd2b49
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 0e22e58b4769c137bdeadf48a79d6944
SHA256: 7f6ca3c331a6be7e66d0c376e64853e65a9decc3f163eb9ab075b16353aca91a
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\gmp-widevinecdm\4.10.1146.0\widevinecdm.dll.lib
obj
MD5: 5a33e95804ea80f06f97453b1a163e27
SHA256: 33bb1b23908e20870aefd100fb10983753b3ffbb308c55316b7b9cb6c9f45a6a
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\gmp-widevinecdm\4.10.1146.0\widevinecdm.dll.sig
pi2
MD5: bba147013aa78944b2530f3e4acf231d
SHA256: 2347297ebdd087df38fad1acc207f625938ff575f0d7c0533c6c5572f042f6c9
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: cafb3fa05e0099e85a6bb15977bd5ad5
SHA256: 9927ee5130ed3ef7b9d6803476d45040ff68b6a246ca1cee5294d4007f279236
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\gmp-widevinecdm\4.10.1146.0\widevinecdm.dll.sig.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\gmp-widevinecdm\4.10.1146.0\widevinecdm.dll.lib.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\gmp-widevinecdm\4.10.1146.0\widevinecdm.dll.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\gmp-widevinecdm\4.10.1146.0\LICENSE.txt
text
MD5: 49ddb419d96dceb9069018535fb2e2fc
SHA256: 2af127b4e00f7303de8271996c0c681063e4dc7abdc7b2a8c3fe5932b9352539
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\gmp-widevinecdm\4.10.1146.0\manifest.json
text
MD5: 6489d53ce5fbfd0eba9deceb95323c61
SHA256: 1a8ce8afcfddd04cfb3dd743b0bcde8d439d9f86a1fe262d2f99fe6876631fc7
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\gmp-widevinecdm\4.10.1146.0\manifest.json.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\gmp-widevinecdm\4.10.1146.0\LICENSE.txt.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Temp\tmpaddon
compressed
MD5: c787e9b06b44e979c9aff51c8da64b4e
SHA256: 7e8db6c2e3e62999814d198745067e04e7c61c1580d75cf73534712540df5d9e
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6A91DE3584805A60E3814B20D5E5EB3EAE98CA3D
compressed
MD5: f9e985f81aa36240cb69d5d6e507bbdf
SHA256: a78428c6273f037b8475bbebf0523ffb61d13b10819ea4ae6347d9d378af46b6
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\broadcast-listeners.json
text
MD5: 0ac40829a7bccd8c518a7fca670bbaaf
SHA256: b8b76f397320e68f7f715db335571d329850dbdfce50ab084752bae584943e1b
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\broadcast-listeners.json.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FE72E38D783074D4BC7EFD7B930E4CE0A69502A5
der
MD5: a94d1f9ece9ec9215a456f7942dbfd34
SHA256: 48ab6961f83579f799867b7f5af235a6f79a9a7d0da45ed2a4bf32ca1352e6d4
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: b315617a90f35be4141c21583fe9dc1a
SHA256: ab13b348367c80dc01c00c7d8ada848716b2a10b80bc49fc41f6d0ab7d378ef3
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7020EDD58FF97C37D25A7713CF8EC9E75B1D41F7
der
MD5: bf21b9502989d2ceede1a069d53e59c6
SHA256: c298c1d45626bc255afb7fe434244d2f05f2a046642551188a754574f1bc6f73
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 68f2c65d5e62ccc9df994cb812a840bd
SHA256: ce729fe7f4434b3224296637adbecd6c7912cb8ab342f70a1259d1169651e067
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B12A6F33D41AD89EF5043C516BFE972D3E63790D
der
MD5: 18592831c13b78246998374dc87fc38a
SHA256: 08a683142505648a690f86aafce6df787f9cb939112ea662be162bdac8f7a7d5
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FC01F824AA53A766D9929AF3522B8BF0DE5D6B76
der
MD5: 8b30aa1dba5aac8b8ba0c225a79df2bc
SHA256: cb5378ad6a3e799ef98b2722741a13b73e4946fb9df59a50beaa71417aa4d9ab
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\890D1AFAA4F7513AA5F000CA01B31D25B6B5E63E
der
MD5: db8a1063d88a8ec76022ce69d7fd68e4
SHA256: ba5b8866c433f745904ed69aaff5c1629cd896f82c56670947616f9bc621b339
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F1D240ABB46289D566DA339D36A3C6B6FD76263A
der
MD5: 152f62727ba6dbeddfe25e26cf72a49c
SHA256: c0568288d959d946268bdc49351a2ca55650ba6234b16b6a4562427fb1269085
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\aborted-session-ping
text
MD5: 4bc41e698f0a48c1d109f06892993bd3
SHA256: 0a361376a435d3cecc2115ea4e3a8a972f8fae28cffcf5cd2c95ddea81f843e5
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\aborted-session-ping.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\session-state.json
text
MD5: 6abcfe896bf3b172c372d1497dd5f280
SHA256: 3da53bc601be093c97e529ebca2f22beeec0880d6ee6a8e321ab265f1c9a7dc9
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\datareporting\session-state.json.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\crashes\store.json.mozlz4
jsonlz4
MD5: a6338865eb252d0ef8fcf11fa9af3f0d
SHA256: 078648c042b9b08483ce246b7f01371072541a2e90d1beb0c8009a6118cbd965
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\crashes\store.json.mozlz4.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 1981fd0b71291357ffe84a4a7efba6a1
SHA256: f3c1c90e3017b61c833705bf9c2434b1c31e55afa41ed169deac41545eea4ba4
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite
sqlite
MD5: 398b0d15cccdece93bd5bdaeb2563388
SHA256: 147b8b0bba38c83c00827b0105101c77e466ad9ae9b39fe72a47cebd2e2eeb23
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: e03ceae8bd7650321bfbff4f1ff58ab3
SHA256: cc415db1c5d48efcc6bb9a37872aed349633b78c77492610e7b96c2951b8bda0
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: f779fca254f17a9e356897b4e82893c2
SHA256: 669404bb7179f82f23a2f91d1047ecf77b25230feb872aa2733c6bb5b7ad7a63
2980
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_ZDvq8HsgnpCxAoI
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1D015190C6E9AF106093FE0E23CADFE7DCE5C0D6
cer
MD5: f3a2b41e151ea00898a4b7044ae986ac
SHA256: 166b277e7e9def225c337abc23b473748aa3ca16c08cd4a491e64cc29c06b393
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D00A688072D5E651DFCBF1F615D0FF8CC68B8989
binary
MD5: 6433678c1e1b2c254168c5cc3c6c6102
SHA256: 2e57492fa29e96459a7cdd95904c84e0dfd63d1fd49beeab160c7d71ab17bfa7
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1EA7BF89DC6525298C79732BA96F91FE6B33F206
cer
MD5: f1d844ca33fc5d913cf76c3179d77703
SHA256: 23f66ec3c424fc23ec8dbb98e7c456187510c7d86b6ff64ae90e859820a0e3f0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C7BF762EDFF44AD7B5A6EE80EA52F7A62A020A23
binary
MD5: 52070b77cb14cedbec3ac73dcf062491
SHA256: 780ed5998ebb41167b401007bd08cc8035c34433edefb99ff0fa096f52a0eba2
2980
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_XIzSMl5AdJEx4V0
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\revocations.txt
text
MD5: 7ae76cdeba8d24fb60f2c0ea2ab3daa3
SHA256: b68e311a619088cf2ae3bfc0595bc579f6e339a702d8f958792dfb5485ee4093
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\revocations-1.txt
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_j32RCohTl6O0F4D
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F70D8C9D3E7D30072A56F7D30E16FE61B9E6338A
cer
MD5: 7881872e09bd6c524ef02ea66e423326
SHA256: 3b5f5c19983107b936cf1460b3b82c2f3429cef55b53c50849cf490967546b01
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B7C00C358947CB0687ECB87477D4E9526C9B4A02
binary
MD5: e16dcabd2277cec88904cdc3634a5a6b
SHA256: 76da2146ad16e5800b15ef9f4188f491925bc4888516ec23de779cc05855392a
2980
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_zaGymklKIfvDHac
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: a323bda38915fb7324b1104c0e9dc996
SHA256: ceab64a5d0ae08787625f51596797ce9f95ffc9fa2ace7cbf2b400170d3b6e5b
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1EA7BF89DC6525298C79732BA96F91FE6B33F206
cer
MD5: 8f6ec108d143939be9eea8362ce6322a
SHA256: b55f9496ca3fe8660dfe3736ec5810638125a347d186599886b039c42da90aef
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6F618D9BE823CA6E365C6E938F07FDE5CD12D418
binary
MD5: 5a5113d30985770a223bd4bceb5b4b4a
SHA256: 7c558bad64d1882f1466e8c95b4cd6d3722562264e8d8ad2793964dece828116
2980
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_CMjYowEB3jWSWjK
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_UMidgEQnB8B3SQd
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1EA7BF89DC6525298C79732BA96F91FE6B33F206
cer
MD5: 768a7d68ebc7365ac8405925e14e506e
SHA256: 0409c94438522876f07f611145317fa064e0cde14fb6471cbcdc129abab1678d
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B386B2083F32B24ADA3AE7E57DBEFEB417F64F22
binary
MD5: 2ed8fefca0f9da6d11e677a3479ea1e6
SHA256: 5c5269e38aef5ffa678bef8baf78c48f374c1a9595e1b4c39d52aec664c74981
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 3fb156f3731f93c8e619c19137c3f2a1
SHA256: 6a7f5702784ec5a8a2e25b98a1a879607d3eb54550f5c877ae19ef4906c6a362
2980
firefox.exe
C:\Users\admin\AppData\Local\Temp\mz_etilqs_XFjDfElPhch1Nlb
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal
binary
MD5: d628a5df65302cba539a7a4ff49e13c7
SHA256: daf4c68ab57439a36ad0cdd3c53622e97fe631a6c8aea6618dcc906cbe9b5bdb
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite
sqlite
MD5: 1cb5484309cba87630ddf6a334654fe7
SHA256: d6aea2eb408eb9564f0d7b391b011d10c48f45bed1eec643da3d615d001b92b8
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2B8FB3A7C1E8990CE64886D66718692D2B2ED2BC
binary
MD5: d6e1c289dbca1491b7658e273d3ca905
SHA256: f85e31901d37ca6954efb5af36ea230f4c51f120c3c4d7a6247c3c6cdee8e237
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.baklz4
jsonlz4
MD5: 645938de085032a63f32a8bbd491c80e
SHA256: 27f96ee5fd8bbb8cb361dc67b34ac18be22ec7c7562ca0e7dbb84a4c6434a545
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: aa8c1c9d228b1fbf51c72cc12eb8eac4
SHA256: 81747137b9959a47ea9086fc728b54090285a94fdb4ec93a708ac514fdff3799
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite
sqlite
MD5: 81fcd16a17cfd7f23c9c69cf0df1833a
SHA256: a660171f42b71501fdf1c222ca2d7f0c19722a083001d40f9dc4e4a860ab989c
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 92528a80e673d0e95cbcc329fd690706
SHA256: 1f253db29893830c3c7bbefbf59820b4869f46d21d83b635969db510178902f9
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child.bin
binary
MD5: 3565e627c849d54b99bb57a9cb506e60
SHA256: 5685427a779afd57b2e959cd9581f7ce6fc7f4d96dd611b7d8ddf1dcb1ed01f8
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child-new.bin
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache.bin
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-new.bin
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache.bin
binary
MD5: c804e3be119b4d16d4583f1caec539a2
SHA256: a7e5ea36536cfcf5a45cb5b20f2a82f40f0445139079e48a04a7301b8e0c2712
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache-new.bin
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-backup
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flash-digest256.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozplugin-block-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\base-track-digest256.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\block-flashsubdoc-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\mozstd-trackwhite-digest256.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.sbstore
binary
MD5: 6f85bc4b2ecb49e26b0bd83a821065d0
SHA256: c0b3bc9b3dc507ab654caf72d13c3aefa58c9b13b1e4d14dd8816712d80a7e54
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.sbstore
binary
MD5: ba0009932844173bc8f9af264229df24
SHA256: 66d1c00c04d86e313e9a02775cdf906b1be8d4cd6bef423a1b9e21cc4e9f50c1
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashallow-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\allow-flashallow-digest256.sbstore
binary
MD5: d886a47c89d9c49c795da345bc236990
SHA256: a03c5e2656d2f292bf5794c8eeb8d223cd6ba4f4bfb2ed1f325460e879d0bcf7
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flashsubdoc-digest256.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\except-flash-digest256.sbstore
binary
MD5: c921d8e98fa01b4f303481e112202e92
SHA256: 4ef1038730ec8bc7206713c29a936768831b922c5e6c83355fd62d7401d8c1dc
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
binary
MD5: 5109732842f146dee7f5af1d27818ba9
SHA256: 2fe56424c32d20d4342551d7d8a0e2aa89e09e4068b22065171809ce392d731e
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FB9EACD9FFCCE9537F3ACDED5626722D07495730
binary
MD5: f082553e51ce74b1276a2d201bff0a8c
SHA256: f9e8b0ba833b961f4e7553aeb19814f0dc862576fa2a4c110f66a31370c1f1a2
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.pset
binary
MD5: 0c42d99140588c3a27e75d43d7a67257
SHA256: edccb30dd8b90075b5d03497dc83836c0eabf85d65e42ef5d8274cbbccc639bd
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.pset
binary
MD5: 7655fffe7cfbe1ebf96afea5fe2e1376
SHA256: ff2f663c4e453706b7817109f6a43e8b3389e8cfb1b7d64aace2bfba45f3a359
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.metadata
binary
MD5: f1d95b0a5a9af8ebc527c1bb5cfc7b1e
SHA256: 89a38f922475e0c344ee81a232255172a0bde3d9f3ada005c7e58254c7261db3
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.pset
binary
MD5: 80f303b31451dc75d29ffadf75058cb2
SHA256: 92c589f74bbaaf69d5df7d7e705275cde19701c681ec9a573be56255b0e0c6b7
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.metadata
binary
MD5: 2cf905915f855ae41b22ebe049174c42
SHA256: b35f75522235bbb6781efb612d8dc88c053a092aac9bac13571d46cc7b20d632
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.metadata
binary
MD5: 1596fcf3bee57f494e0befea0d0adf47
SHA256: c36ea6742619b259ba6e4b81d90ee1d41fcd6a2e90dd600d3431f81b2a418377
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.pset
binary
MD5: 86721616bad29c6e81f2e7fd49249843
SHA256: 1b2d960fc491a23dfa8421cf8549ac099d5de425b2294f8eba25a53cc81d4683
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
binary
MD5: 1bd8614075ea5e9ea93407bdd7fb15b6
SHA256: 98dfe1d3efa78b0e0c6382a68c1217ca0e172f4e83ea09452ad6f26451d01aa3
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 175fe9f452b9ef874d6ab0a3cf099152
SHA256: 806d8811a4d292a6ad3a8a1ecbe1892ba00416da2b73cb4d921aefac5ddd7c45
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D90361AA6A46D72B06A1D4E1A6CDF40DCF325553
der
MD5: e578bbcf8e084626c53c115ebee16352
SHA256: d105b595cd95404faa4d5c3e9d72165900f8f4c84c839336d41268b699bbbc30
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.metadata
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-downloadwhite-proto.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-badbinurl-proto.metadata
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.metadata
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-unwanted-proto.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-malware-proto.metadata
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\google4\goog-phish-proto.metadata
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D850FCFD29C4899249C96D967DD0549982363286
compressed
MD5: c79b398583771c41746093d726c3ae20
SHA256: 2e1d5912da776b4e6aa561e6047c52b9d86d7a46b52cc980acc50c3559fc42b4
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\011CAF1945ED8DFF0FE4D4DC5199BDFB177639B7
compressed
MD5: 97f641665a528c5d5011797ffec0c1d8
SHA256: 3d129c7c1a018d689c3c3dfd436f8fb06a5f9cae55b524bddf9a99c49f39e9b0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4C4A7D069D3545CB328911064D8B8C3CAF827CA6
image
MD5: 12aa5d6841738693db31e8f5aba8525a
SHA256: b9f6a16f56dcf997a3fc76850dd5eed0390bb081ba9d4bcc85fe1dd0393cec8d
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.sbstore
binary
MD5: a5695cc64d77967232b0c1344c6e72b3
SHA256: 042a22b8681d754671d2018ba109b31a53ee3728d48c6379043f8e3394e7fbad
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.sbstore
binary
MD5: 65e942614eee70680464ac4be75019fc
SHA256: 34395085da32c8b4efe9959e3b0d756b43ffed17694d66f39b966cd331bd9a94
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.sbstore
binary
MD5: 95f28ede25c301301f25fbbd9a3c56ec
SHA256: 87763df78772f7d750b0fa5a31eec23e931fd3bd1cbb33beddfc61889da36478
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.sbstore
binary
MD5: 3675254e341df799d4307c1f59109185
SHA256: 23d108134bed6099793f7dd6b8b6e62081ec3b945efdbc7c5e0e779fd9b82f98
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.sbstore
binary
MD5: 3d1ce5e50208f0cb3b979186043a548f
SHA256: 1e13d05d482c3d533dc6035af2b2d6e84749412a5748d1435b70cec8b312340b
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.sbstore
binary
MD5: e2cf527ca7550b7e7bdf7311e483a2c3
SHA256: f1e07b1d717433f47073dc54a7d98e3e87b3d0fa88e53466f93ea544af885d11
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.sbstore
binary
MD5: 051fb32dece757ba112ac36dc72e3a91
SHA256: 0806d98fb3de55f75d7c0b17e26146567e08c483031526659a4a35d09b97ef19
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.pset
cdxl
MD5: 076933ff9904d1110d896e2c525e39e5
SHA256: 4cbbd8ca5215b8d161aec181a74b694f4e24b001d5b081dc0030ed797a8973e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EFEB3BFE63215457EC53BEB3F0E6408AE46B2C9B
compressed
MD5: fbdf595021023327476e14b23468c30a
SHA256: b524371596bf1e0549a7ffe8fc8874508d84458122be9aa77c098ea759b377ee
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\668ECB3A655D2B764CF2F4EAD747B0B89EAFE169
compressed
MD5: e4dde179cd47bc08a4fcc983eaf008ba
SHA256: c85e9b7e278f88e8b24ea064324d94e5b785d77efdd00caeb8a9aaf28c6f800e
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\09473BD40BFF8EA71F400A3D47ED76C7F85FCF54
compressed
MD5: c28365ce69618cf17d0b7b586a5fb386
SHA256: 9eaa11fb28dc124997aae81cfff1ce51507c0f93cca1b9115c710ad3aced875d
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DD9BE46B463532293034188060988D978053D908
compressed
MD5: 59a16bb20e6bc0cdf47d633dc9d56484
SHA256: d04a5c81e3efa073711c97bdf6bdb261b22eec2a2fa9d67d043117fbbf7bef9c
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\56DADE1F4C39AA7695594DE38335CA7819497421
compressed
MD5: 11065f962aa6d583f524fba21aef165a
SHA256: 92a61bc26ef76f80d98dd37899855d7a6289ba6c620e8cd35520dd64b0a512f4
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\776D15CB5A62BCD54DB824679D4CA10BAD4D5E8E
compressed
MD5: fe2c629475ac75bbc77fe2892b808252
SHA256: 00d1ed5dcb7a71316f12516ac7cb7ea15ee602bc01b4ee50e1321316f2271aa7
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B882D1ED4EF8F3FA0321B314E9C215BD32FD7D70
xml
MD5: 6cc90ad59ee2697ff60285f29139ce11
SHA256: 2fb04b6215fa87c592e11f588b91d9756a27045c73226871bfb1090f2c05e818
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4D4BB668E18EA4E88BBFC3EBC243F60B14FF242B
xml
MD5: 6ea95b0ffe764aed979b10f6059017ac
SHA256: 6d24e3bccb8a01f6348b93bbcb0a2f7e1792574eb14092d9e261617f308f533d
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F08CF6ADCC9CA09A9E621ABB9E86877F519F736C
xml
MD5: de20d71efde75465df065691d0c5093e
SHA256: aa2dd95af8d018bec380823c35232390015272f51831d5fcfa7c87cba16358c3
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\AA9EB3C30CBCD3332FB7B1DDFDC211340F4A62BB
xml
MD5: 6534f16acfa0a7270d265175cf20c1be
SHA256: 0f4aa5c60c35402e4e752d5dfc41a898913ce30b9577c9728d120f0608bb0c3a
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\73965815C147B9A517E4247321618A86BFC45429
compressed
MD5: a1d7dc604ac372c7877dd8a68757753d
SHA256: 59d2526a882d89cd4d0b1418299a0561f2cde25b87c4ebb8f700a1aca3c54348
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C027C3202A4E5AD536F8827093B6C6334DF66B5C
image
MD5: 368ef8bb84adb106303180f02681dde2
SHA256: b5be32a47825d747eeb848e3a94c7fb759e25d621f5f4c3fa354e85efc332883
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B8D2430E37AC5EA791EA89C0ABD0050A78E5BA86
image
MD5: d4e8ae50b893ee200b54990eae47050a
SHA256: 87e5c408c2b4623c37c07e08843ffe5ca9f83305e0c64b0f75996bb39c8eb4c9
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\806A29FC3059542E0F3E217C6A7D2E6A99A01B68
compressed
MD5: d060c9ce686f7e82f9c781b909f55a0e
SHA256: d0ea48bda90b420d6f2b982cfc41b38d181ff3a3a0cde2c2dd7d384420ff4d2f
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CA73484966446E66AE60D4778D6DDD29093EF7BF
image
MD5: ca4a1c81c920399467b0903009cf31e0
SHA256: c69a1dbf581f93a02df65125e7ce50f8bdfa9713227a85f8e95e6a8bc7713bce
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\348D7D187B6BBE9EC414779C675355C248FA4B42
image
MD5: 478a4f73c859f17586a72d07f405ad40
SHA256: e34cea83d2d6eba49aa8d698d7f9ce611d68cbbe8e95f74d05756a2da7d07d25
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6E06D11D0F1AAE91EF92847F24534ADFDF4EFB9B
image
MD5: 06137e18148a9542fbdfcbb129c66c64
SHA256: 7057dbe5e64136ab2c321ef66fc11b9b6d46c5d94c8f926059b1b1152ca8c336
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\363A2C1BC3F58F407DD00F574EB665233965D866
image
MD5: a73b0423c0a02bb772bf4dc44ff46a21
SHA256: 9941f946d96b659642e841debe434185bec58f521752179fd6674e4e5efab223
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1A64035E7487E5E722992F61AEAC9C27C6FD1825
compressed
MD5: 3aabb20cca1fbb476d5df822b46ec887
SHA256: bdcfac054aa31a3dc14cd01dab9bebb34da1241e3f990e6db733a45d7a208bbb
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\39411FC25353400A433D62755B74CFE8D57D1DF3
compressed
MD5: 2d4549bb94dea28f3b8274969590eabe
SHA256: b2b6f1383be278866b0b86df6d7401988d0509d5a53f5bd3928f03bb17f2bb9e
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\686571AEAFCC71B322949FD3C1B1B694E6B61DBE
compressed
MD5: 7ce1ab1e0dd72730d2d656134d36d02e
SHA256: c998bb6734922028b44be083ac19516331bd6e95656d15d00bf29e3b2d2d00b2
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\08E91AE7FED227226C21F2EEB5DCED4AC041F899
html
MD5: 7e1f384ddcd86aef6f1347151ee71d21
SHA256: 67583d226022f23b350819c08286d48fa9798267ec66e246748477443f49ed6a
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FB9EACD9FFCCE9537F3ACDED5626722D07495730
binary
MD5: d6fa03f971b19594a48857ffe35e2a29
SHA256: c566ce5e952e537c4b7f88071b36ebf979e64d882013a4ced504275ae8c7a458
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DD9BE46B463532293034188060988D978053D908
binary
MD5: 07dfb69fc377a8e81cd26e5d03bd64a9
SHA256: 3e338652a19075416563e8cbda1c5b00f7033feb88720b863854da636d5d3198
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\27EC969B9691C8073626599D50A08AEEE80F88E1
binary
MD5: 194c304212c6127f1e80fffe6fcb0b9d
SHA256: b0b18938a63b14b4a744ffe00f5bd964208c427e3c4ad2a609b368ad4c7a75d3
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F75347C52166990E550501C6131BD8C09F8485D6
html
MD5: 0c6be46b60768c71ae7bb9697755cd47
SHA256: 18e56b84382568fa35c27eea7c32da9ace7a0c9e37e0ab4392e4b59bbd05e165
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\776D15CB5A62BCD54DB824679D4CA10BAD4D5E8E
binary
MD5: e9a58075d130d1afd11b12dc8eef36d3
SHA256: 5efff121bab54fdf43a70a2b3d39414ef31c62bdf4c1b189702c692f315736bd
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\25218EE79CFF5F3AC18C58CFDF44A674E3560C47
binary
MD5: 9d029a0bfd2aef2dd3929f1a71bfedae
SHA256: 0ba441e6f350163bdbbff118bf3707e9632e4ee587ba1a50f58e589eadae053b
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5A752590291504CB8487B557D595809FFA4BA7EE
binary
MD5: 04dae5085aa5251ace1ae4c521625f25
SHA256: 2039ecf0905ee0b25c144bb6e5b9938f7b653aba75fc620fb7f0da0de83ca28a
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\2EFAA3BEB4DC5A60B89E90C863E95A5554B392FE
binary
MD5: bffe3369abb8f1b4848a26cd414fe353
SHA256: 7e8f57eceecd9c24e0be765792c246d40b311f1fee95d5201a680b0ff2c389ad
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\87078FD9E21EDF644620CC822F2B92C34ABB03D3
binary
MD5: 7b1bdade335d09f8ea248e0bdaca331d
SHA256: a25e6d8811a1362119423014945689bca451394088cc41d979e13bbb7df9530d
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7065F24439231CA9050FF6594A90F3A36A1C7ACD
compressed
MD5: 2c4b739d13a55a612b0ceb0e939776b6
SHA256: 5d21bc7b91cae691a27352fb4a4895eed0722720aabf8ac4bcd2a2eeb8053e3a
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 2d2815f59a390cfe1fc317e1fa4f34e8
SHA256: b3db1779955bb4a183da075bcae39817c3a114e6057b85de53b96407aa65928c
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db-journal
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\304DEDDABC5B2161AE152F9D8931DB0B8FA6D873
image
MD5: e874123367cd54c899298966504e7608
SHA256: c39b94b87621caab960d3242e2b49783065f72fd8d5e4073ac971934b66705ab
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B3731F322E0B69DAB5C1E05844C7114AAABAE4AC
compressed
MD5: c10382e81d27d37996c00ba9e26da9f9
SHA256: 95d3e5b7ec952442a9ef8c6be16b532a7bb8694139e7d093c6a0819469ee821b
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3E909BEB9AEAB83067F8C03C2D708CBDCD8FB48F
compressed
MD5: e7aaf86d438f6a7de62afbd3ba8c8f6a
SHA256: 0c93395c82c7fff2776ea679e7f16610a523d984aa95c1346d0c5930d372aed6
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0C00FC527B1A0DB2518F703B0B5A32B07A496A97
compressed
MD5: b81cc9b77870436768ce685431563d7a
SHA256: 915b57d4fd4e1830893eeb7ba2f292cd2f0bb0062d8fe415bf90fc918cec3dff
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\143A01C7310747F4AA93DAD551BA192DD563F167
compressed
MD5: 4fd51739382a0621732be938cf071f4c
SHA256: fbcd9628bcf5d0d62448d10b42db36f3509c8776ef86cc0645748271d0fd7508
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\783A76015DB2E7BCEA5A102104FE330EFE553D05
compressed
MD5: 0b04bb9c618c2f6554245c0339d5b282
SHA256: 5843883614ce75356d024212ab09d1af614917c471268866d0961c334c61f1e6
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 1b78b8b6d88b5e34612c9b2e679c1e93
SHA256: 363cc70ed49d5ff9c75657f4549854bdd8cef18063b26c7041115cf39c8d2867
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\08E91AE7FED227226C21F2EEB5DCED4AC041F899
html
MD5: 86e8a3a3810a215389aed98c658ec74d
SHA256: c0478a666fb701c4834476cc9cafcc2484b5595ee6e13d40e4da9e8b08e1ba6a
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\permissions.sqlite-journal
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\D8BF7EE85E78016D91A8E06C6B7EA8B692939D1B
compressed
MD5: e249f07eb3bd482a77219dbb098e9716
SHA256: 9a6221d94ff6f74d1b8d902a514702508622b6a97b4796b2ca2b6def90618740
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DF8BA88F0412B2DE08E62B30EAC54A4EE07D63C6
compressed
MD5: 91ba1b6c33e778797597d335a2051bca
SHA256: eb854757cf4e2213152393c4efe532d48b52e1bd9ab79d3e119d93a7f1ebd1fc
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CA42DFB5A3165AE6A1CF5201AEC44C1659FB122E
compressed
MD5: 68d0cd4a0d324c025fa99c1b4fca5807
SHA256: a34786d3979b8af9bad66813ac66c33dc8ea14e428b90b73d11df56c5a339f5d
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1B8B96D38F27D9B0D032C8528AE160784F50CDA9
compressed
MD5: 037c394a1a8c721d0d0e330d9b1bdd86
SHA256: 5f72b11037ab4a9e40eceb709a730422d21343dfc3e33b544688b8647289a085
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\13729F19A659BB4B8759A11FE5E71EFF6547A855
compressed
MD5: 905c099bde572f797abde9df31c5a448
SHA256: c894e5661c5cb4f5189183f60040f43d793cbfba210517a14f6359e28eaa5e7d
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\39C4C8660C648AF07FE8C6F684AE9360D092418B
compressed
MD5: 26f624303d3b0d212845a30fce0bbaf8
SHA256: fb7ec49bcb9229b2c01b59f3f8a34d87a04ebb1e441997a5e360786771b2040c
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\287CF8D29948088D6FEB0BF6B1DD1D0A31B6C403
compressed
MD5: ae40dcb72545b37519dfe93a052f9bc4
SHA256: e57cce5c54998ce523ff57b15d1580be61d78a464d5c312b06b36b8cefe0decc
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A88008F3E739B46939CF06AD40FC4204BE207E59
compressed
MD5: efd7fbf00258f28c205519166940bba2
SHA256: dbf7d0f015a1cc46006ac3f5f855585b786c2673362a68616d7f98472a6071e7
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\64A22120051F022BF512C1BB74BA925E44E5EB22
compressed
MD5: 2885eaf66f621a7e7bc5846163966e61
SHA256: 771fc4d08bebd30235df8bc7f8bafd18d53ffc344b35da457eace80786a5bf1e
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C1E59F0DEB715DB4FF78031957635DA512DE43F1
compressed
MD5: 0a5bf5766f6348d1956db7be0cec1c68
SHA256: faed0d4fdd259f06173c1fb103498cdcb0b3697e370a31e28e3022dd26b56c45
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\37F4E46F3A6E12DCE30AF0A07ADF7AE5E7C79BFD
compressed
MD5: 570346773d7670bcbb126e2ce9d0e28e
SHA256: 5a958c4de4156ce7ea37a2fc0d18c649bb881447db1c323267a217e802c40009
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\44086255711A09670B9EB80EBFDF1C34C17CD145
compressed
MD5: fcd6d4b1b88bd83060f915713ec3dbac
SHA256: dc9ccce1ef419a847e2fad91af2b3659e0889b06bcf54f874e93fcce80875c31
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\61A94D13069CB388AF1A46B9492CC01AF98AED0A
compressed
MD5: 626645263a897d90a2f3104ed2b17765
SHA256: 2f07dc58d3234fea86a250a44ab9b530f3fa1764ade3ae297e6637983c4dd184
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8808A3FE90AEE68752264F8608685E26BB255D36
compressed
MD5: 9b494610a89fba838b080ad13087c5ed
SHA256: e14df93efd03d0e2514c8f415cd41432f2462aa03a1933afecdfa453be22ea18
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6A5BB5636AFF6E1790F6308CDB00B14CE263F6DC
compressed
MD5: 1ee3dc5c8c6189f61412b6e18fc72e8e
SHA256: 737869a198243c601c5c7d01677e2aa832bd54647df217785fd1327352d4071a
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8681E10CE6666A2072B79A7E283575E7AFB89FC9
compressed
MD5: bed1947ab4015944a2722e5baa1c5a08
SHA256: 177f6ad39ee8f571e8310e2a6ff386e66d4ac22d3fc763ea727fe10e895360d9
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3DFC8B14D692F7502329E7DF8F01535C24BCE817
compressed
MD5: 0660aa44083ef0c226524098967d0c14
SHA256: 77e5a5cadee02499f26cdef5856447d5591605cd18841469aaa36881d8a3021b
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\50334D7B6889E5367187142058304887322FF2DF
compressed
MD5: 3fa919b7c730cb27489ad0910e6f4a67
SHA256: 0333aff2bee00c7f91e3c1771fd1192eef3316c1f6e2480f5062dba80cdfa8f1
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\1DFCDC01DE820BED44D523E0B896717357E3C1CD
compressed
MD5: 45737396bbbfd101b027259d479f2325
SHA256: 53bd97744557e3f95f7d2b5cb9c18b24b832d67f390dee65a6f7dd1f26a0a5c5
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionstore-backups\recovery.jsonlz4
jsonlz4
MD5: 645938de085032a63f32a8bbd491c80e
SHA256: 27f96ee5fd8bbb8cb361dc67b34ac18be22ec7c7562ca0e7dbb84a4c6434a545
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4379B5AAC205F783BD97B42EF8C8BBF4C341FBE1
compressed
MD5: 8271a2d7e3863c68f864664012bce454
SHA256: c7506efa8140e2b90c731c77b1266e58c9709d1f2a8b93270bfbd1fc3ac72832
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\97B0F5128A4892087EA7DFF315286A40739142B4
compressed
MD5: 2e8c221de48fcf7ee8a0b5d8472ad785
SHA256: a6810307d88660ade997519c57cc97e993695f7f637d8fe8bda74445732c8413
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\DD1F23F4CBE8704C38A2006AD895F11B21DC98B0
compressed
MD5: b63d33be1f583bafa40a9ca2a6e65801
SHA256: 98694937e4f17ea7f4bd233600b32b4ee7e5808e516667891ac927918fea2b54
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\162094BC08BBF2C42398DB351B1F9213D409F843
compressed
MD5: f2d74d1665f1fe7116b585627ac94042
SHA256: d373093354aa0197160ee7ca2d1b38dee00aa715f6b8fac181fab78d437bc0b0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E02D6FE03B997D693E8A915694C9BF508A325929
compressed
MD5: eeb041975dc74d7a2d30f713a634c240
SHA256: 7e7e72682955db9af2b6951a82cd4ea418fced0c93f34ffcecfd812669045581
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0B733B3A3ED110988E10990383199D829963A440
compressed
MD5: 97500f30f06605e6be12ed692b4b6705
SHA256: 78fc5ee8e2d6d7811d93a13519562bd5b3887eb345974ebcb972e1aa9581581f
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9665515A16A0E13B5D676D4231039C217591510C
compressed
MD5: 7c77656f44a7fc6ed7809148ef25a4b2
SHA256: c41ecb816006bcd881dd056dc9d5b0f4e2102bd9ba39a18a0f4209ca9e45aaa7
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\6B5AC6819C2020E7E02813A17CC4F3FAF4159D1A
compressed
MD5: c72069684a071bed06d3ae00cbc8cc85
SHA256: 2e5d6f853deb5ca28e8ae6b9fc59184c4c0b86618fb163a5b09e2b55397531f9
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\07BA5A08641396A87EAB194316FF41AC1E65E2AE
compressed
MD5: e59700b714187cc861a5dafdac3c233a
SHA256: 49f4b662f77a26b6b2707e340a374efc965ca8aebbb7d8bfab6e69311aa3f785
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\22A59A31BAF7134845FE941DE15BDD11A6037CC0
compressed
MD5: 6f524b596085889e01519351cb4c480f
SHA256: 72eb1ac6dd20247acccae4c46a0790e5c2cebac8e52ff6e40a27ed82d65b66e2
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4059C2E66D83DBCD3E4F6A9683B5EE4C3ACE6744
compressed
MD5: ccd5836e0f2331bc6f14b01d1578ae3d
SHA256: 58d9af91adb71a0f92c2941beb733df00b2b992fbdb7dbcbcdacd9ee722d708e
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\addonStartup.json.lz4
jsonlz4
MD5: 7337d087ec76e87a76778b4eec5e8e63
SHA256: aa4398d1716aadeb35a4ddddc4e7d2429c71defd15cb45401938889f5b2f05e0
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\addonStartup.json.lz4.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F7D63AE5DD8AB1B89EE84C6F105AF45DE0C5A098
compressed
MD5: e71b94da1a95b1c6d3ef27f680b457a5
SHA256: ee0ea4c95ed24c0ed9d616d401a7a1b5114e331336b0fcf55c45a75f46da6c69
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\601DFE5CA8A5D9A05EDC6034B1ADACC4D3FC2B4C
image
MD5: 9f94e606d4b2045e18119dfc1e4b91c3
SHA256: 6c05667676e541d4f76d501263a613af0f643a02b38fdfd6749d491d7db182f6
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3BBD454D2A4BC959BAA8BB2C81AF276208B6FFB7
compressed
MD5: 6cd57fcaa1ae49fd29e64012333eb1a2
SHA256: 1368c575295f7343d2a3d53f815caced3ecf7d907e2f9b5220022f355c22fc94
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\00E8AD97405A8F68B76C800D1C51497EDDB9800D
compressed
MD5: 9a3911a976561039ddcb4ffe397e2078
SHA256: 8fe49d286518f5a55c321d5ecbf7c4fe06cd23e39c21270269cd775e7835daf2
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E8A4D776828E41892966935D9FDE0E171187CB5A
compressed
MD5: b481fe909b872b4f1b577130d9dbe116
SHA256: bd5ab3f87710ae1ae3ecc54ba832ff65d45a7d5464859d834725940e7b0ac934
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FBD45E7818B498B565AF0DAB2774A44C3324ED0F
compressed
MD5: ec30039d729766b2c22afc0ecf3ede57
SHA256: 32609a997a82f721da7491b7b175f9b8f0bc7844ef002fe17b82731a181378b8
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5806720D143CD40B4D54EE24BCB6388CDE74512C
compressed
MD5: ddfa5f9d7e16f07a9223b0baae612ffb
SHA256: e71f3e1d1d54a508fdeaa1262ba519de5f008498c2d6bf68ce5559438f7219d8
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8FA9129A218F1B2CFDF9D3925C25789D5442BD71
compressed
MD5: f2db632329c9de9835e30d4449f31c0f
SHA256: cceb631fdc983b2ff108ee6802c5daa8798060c3c27f67808b01822a1b0182e4
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B5B69C08B528AC3BC03AC69E67A61735E99A2356
compressed
MD5: 793974be436df87a1832934415ea5070
SHA256: 4f7f382370bbd0e52de24e612db74721a07452556f6a93ccc59ea60d2bbb460b
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\ACF29BAD8DC0B38989B7A1C54617B28E6832DA7A
compressed
MD5: c8c22a8f6d2709e310ff1bc56ac1585b
SHA256: 68d42330f0ba20ffe99d61e7710fd4160581376d7b27a46d19170b78783bf280
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5BE5D9CB1161CDE1C474FBECE949A2F7ECC86076
compressed
MD5: 10ccec87c18ce717e627d94e4867f034
SHA256: 5d8de3107f9b17f58a2d0014a571d53d9f05eb62c61e20be52ede2a5a09cdc1a
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0E44C9B294AC34CAAB04D33D468E9190268884C4
image
MD5: bd44434974ece450a8a0d8ffc2d2a661
SHA256: 1f3a034b4a7fcaf5e1100a28d92542dcbf1c06276741567cad7e9cb2172a7cec
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\5BCE55CE6FEED1D636E6401277DE65C00376DFDB
compressed
MD5: c672ffeb7cde3b5570e6b4d126e57653
SHA256: 4523610bd9423418e32b399249805c89c1d9b75d383b7dc5ce12a27cc609cc44
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\75BE5026CCC570128C33A8F001608CD4B4B77258
image
MD5: 1d38fbbd53f68e424b7bd491b7dbb538
SHA256: 53ff284fe128db220d61332f7152fac2c05205bba771365d6c9909b3cde2a875
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FE717C3A7F4CCAF95DDCFBAD83333ABE2DC2D85E
compressed
MD5: 44cd2bf4cf138b878501541d8e1f3184
SHA256: 2b4d30980be9d210c8b8db27e762cf2e0f762607534b98e06dc07e2f6d547d1f
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4BA2ABCBB1C9FF251BCAB996DB23DE8F57745FBD
compressed
MD5: 78263ab31dd6c199d263f23bdcb7d54e
SHA256: eb696e1c0bd795e028205c1532d47ac52afc4fae35d9b5845a0e59947ae25671
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\8906F57D60E6387A50887ECE9D185144670C203E
compressed
MD5: f6a60cd51f78284cf1d74c4e22e7539e
SHA256: 569de3a2077ef9353710dadc815db66c8ee9f668c2a25877fa7548497dd66e8c
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B0C2E7E9202E0AD0D438B47C50D770393C6C25DE
binary
MD5: 67dc1ed2f89bcd94613a5112a6b5a556
SHA256: b969f49c6aa3de10988427ce470d3f0aee2046e3b08f7150cb523d9e0db173e0
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\0F9BE363ECBEC2C2B0453D58AD2284C7F837FB3B
compressed
MD5: 07e1c9edd1986503398bf8566b0c3852
SHA256: 648f7449f13d6c7d4411d7ea01dce62157053e2cc837d6005af0f496e7f87837
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EC11B8247D2C643AC4D15E5A8A0964C96E9F5D1C
compressed
MD5: df03420d57aa7aac603e580b102a51bf
SHA256: f8114269c9628bce7c4c34a5dbaf2b54ea65bb88e6269d2fd29b21a761adbb0b
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F794305060A5F8BD12B34B55D524BC0C321B3E13
compressed
MD5: 2baaa80088f8d39e60a6290ce9f273da
SHA256: 24a1209912a9d6b5b1c16d3af11df5ba2e7fd25fd9b1b0703647203c963072db
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7F8E542BD46AD246877D680BEE3103F788BC7074
compressed
MD5: 5e3cc7e05405f0a40165cb0276320d54
SHA256: 1df903d927a82ab5e3db60c875f7d0710a28b3b7717d52d41d20803dce5014f6
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\284D99D4E62F221C4396286C4FCE62F9C762295D
compressed
MD5: d6e3a052822445600c9b62986b6ff7d0
SHA256: d2c6a7cbe3f8dd996800fcfa4cdc3d7d4e7c5a7b14883194bf9da0340dba6a1e
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F9FB8962AC83250FCEE8D4876A1472F530765786
compressed
MD5: aa88f5485b33a49fecfc60e25e7496f7
SHA256: 2d1a714e78fa760c307413f1b6f57b21be7db612548f14a9c08a999c76e45798
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\E6D81D53C009593F31D285EC4F3004CAC739BE99
compressed
MD5: 37a3a911abc3a4a5611dff2e2f2166af
SHA256: a4198f2ea80bdf4559e77e907ea6c3a66594dd3f85f2c4f168eb89b7d6639273
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3CAC3F95F566173D4000C86C6A31A4133B2F0952
compressed
MD5: 9f1fa19e03bcf59afc81c5042c644d1e
SHA256: 3a9e41ef8f4a6ee60f51218a740fa93a8ab6cd598889a524834e53de30cd3630
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\93A13890756B0C0CFFF0DD8E8A79D48F4D33A53A
compressed
MD5: 9d154b773482023755b8f00be7e9e53d
SHA256: 8a0f8cf19f3177f16ab988bf321fac14e2358a9912241fe69274eccb6589df0c
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C352A319F3D24AA53AF2877580CA92E639B4A34A
compressed
MD5: cd84033ebfafbb5f18d6a22b451b739d
SHA256: 0560581ab3301a9b6607d51835eebbd29748325639c6d826cf9aaa9ddc68f8b4
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\FFD550A95F62D1E59BFAD60819DF3EACD92AE7AC
compressed
MD5: 2edea0e6d1b8f1864b9aa691027fc1fd
SHA256: 7430f43c125dff5a6756f91c0ca694b225152e5221e16ed84edaa2a7999c63d1
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\search.json.mozlz4
jsonlz4
MD5: 96639b5609a251a90dd20d332b77a8e3
SHA256: 74c944b003e53ce165498b50f09fe7cf52044e61d395682853799412ef1f5f9d
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\search.json.mozlz4.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 83a025667468016555fa9b7848ccb550
SHA256: 4adecb4e4c06e1bd71070b2ea0e4203711cc738fc2eec0bd3f179fcce2d6d570
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\B2A6A3A981FCA9688A7267FDF34EC7D6535C34DE
der
MD5: 4d72fdc0e9a5d74132021980a08f21dc
SHA256: d0302e1b9f920a2be556fc2ee340f222750a2c34dbbf29f29a6f91e78adb6c53
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\9D2451F9F014CCFF7C0B921A2E233AD2F5870EB3
image
MD5: 1a9da8944042a329d6f7bc00b28da50f
SHA256: a038f31baf3369ec85e14894ed421801cf560a062bd5afc0752ddae7576d0ff8
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\45046A47DEDA8ED6BD38F47374E1B0C5AD3C213F
image
MD5: 0ad9124fbba0cb5404e2fbb4e4ec1651
SHA256: 7140570e653205a49ffb7fe7edd490f9f99d0f86b96e9298393dd68289413def
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 455b13ed0b9008de3c6d7b05b52a94d6
SHA256: 20c6cafbf0babc43f415ef695b6d3ef67260dd7c114d5603de1848742254270b
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\4E0647BE10DB7E634C47622641EC70B6E4440E50
image
MD5: edec87dec67f37705f9bd92cac1b8bbf
SHA256: b46743ba1398375b0b9bda6f5004d9e7b2718dd3f61e3b6a0d65b1298a89b227
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\EA025A81C2DC1663DD67002D112961A1C1185FF9
compressed
MD5: 346b0e7023b1d9d2138e2c6cad6beaa7
SHA256: 57805bbba1f02648130bf580ae7ade37dcc8689a175f046ea15924eca691c3f4
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\7D7D9A50C603D69057EBB60D302ABC15D80E5F7A
compressed
MD5: 0f35df1b1641ef86e48a350a7eb23a44
SHA256: 4d4dbba708983f3035a7d595f28a52430717397504b4c716c31e32c83523480c
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\C9A388FFCADAA771412FEB9A18F566752F7243E8
compressed
MD5: 1b155619fd0620fa366cf6dbbf1a1671
SHA256: 1187449374214d320b5f2a163b9e3093de9bf8a528270fc6b05d039fed800e32
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\68D13F1452916BCCF35110C1D4FB016BB0F5086B
compressed
MD5: b4e0aaad19fc341d63ff63042bf69695
SHA256: a4d901d6bccf70114da78f3e58e8cdd52d48bc02cb263f73c19b0ee613bc93ca
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\49968F5AAF6C3D4E162E052C301E673D6E1D2552
binary
MD5: 0fd4cdd95f056cfb0c4990f9e7f5c4f8
SHA256: 464d13a1f4cd18e20c86df14421f6bbbdf56533e675f3421f597d1162257fcab
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\doomed\10431
binary
MD5: 00845cfa655570ede0374d9c0df85b59
SHA256: a421e6f7103b60091014b90f4118ae00b723d80599d4356e3e150b8f2be2359d
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\A98958F040D8997E2351D9122E64B564E728A9CA
binary
MD5: f014ea830149ee3c5417f71dbda6d9d7
SHA256: 3a13827a14774a360466d2f4e2e37e5659593fc0896e4e99d0934eafdcdd8b5a
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\72B42C5D59D095EA88C7A5B1E1447DC443BC04AC
compressed
MD5: bf7ea3623a5c29d17bf21ecf451bf0ba
SHA256: c377e7b4af0bd770b3fe392c2bc71c732ba45c58cd4a8bbbd0fbdf29cd701996
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\87D4C8798C3F39AB89FCB3F1BF4A116ADE2AEBBD
der
MD5: 6459e42094c733784b8643d80023a01f
SHA256: da157a569fb4bb7c73e0c7c01c206801d7a727040c6c788daaff618037bb29ef
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\3549DFF5FF02594D483BDF54D1E1BC579E40A9DD
der
MD5: c8a7a83fca396a415d8667f4e950e465
SHA256: 0c6ab8b15c7285140b56c97c9f4579990d0bc339c8284d310b65ee1057a0ea91
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\CD4E638079961EF01536399DE0CEAF299931063C
der
MD5: acbaa812f480374b0f27264d564e412a
SHA256: 8b8da163a4cbd7e25be6ee703d3ca1df30921e013abdfa3eccfce7134dfbdb80
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\BA4303ADAB677A8A3BC361563BD4246F25603638
der
MD5: d0000fc89ee86c0642a6f89d1cbfeaac
SHA256: b03faa2c76f8d81df75937948d7a620bcf6eae0b13801994037063f44700db46
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\02F4526F526F0DD0C4F21964448981BBA1F5DCBD
der
MD5: 6f9be09bd543e17e787b059e57122426
SHA256: 6dead6c21bfe01871b0a1e57c6a8cc469b8a99c3acde649279e5a82949adafeb
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\F75347C52166990E550501C6131BD8C09F8485D6
html
MD5: cd92f75fa05199096ae070b6ebaf225e
SHA256: 2108d631831d38a1d6520dc4721d68f6ef13f29f561777eacf50b95575100a59
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\16A24D9DBE3BFAA442136FA22052DCA7EB422A55
ini
MD5: 382abbee4316094d64d27962cda38469
SHA256: 1f5415fbda338c523a65ac249f1716915d07f0c06714e0d67e8157a1527de144
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cert9.db
sqlite
MD5: 7a09ea485022bf14eb0236db200db05a
SHA256: 8a13a5f2b1ae98bfd2d8cd7406acf81e457082d58602e4db8503b782983ef489
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\entries\05152971B99CBEFE8135E9D7C8D127B740A2CA35
der
MD5: d21b7fdb0fba03bfea4235d0347f7d78
SHA256: 9901332c3dbf263a038117f871cd8b11bba30ba74cdd235123f0622944260cba
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-block-simple.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-trackwhite-simple.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-track-simple.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-harmful-simple.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-unwanted-simple.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-phish-simple.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.sbstore
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\safebrowsing-updating\test-malware-simple.pset
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: ae753bbe0c63b1cf22cb6d1c2d9893e8
SHA256: 9dfe836ab7360a2bc85930db9de23a308f5371b724ee5ee3caec8cb4dc95464e
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json
text
MD5: c4ab2ee59ca41b6d6a6ea911f35bdc00
SHA256: 00ad9799527c3fd21f3a85012565eae817490f3e0d417413bf9567bb5909f6a2
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\sessionCheckpoints.json.tmp
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs.js
text
MD5: 8f89a5889e1615f65674daf6a01a2454
SHA256: f6d3fde91836d607a3311a6e0a12463c811f791a9f231d2ff8542d772fa22ed7
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\cookies.sqlite-shm
binary
MD5: b7c14ec6110fa820ca6b65f5aec85911
SHA256: fd4c9fda9cd3f9ae7c962b0ddf37232294d55580e1aa165aa06129b8549389eb
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\cache2\trash21718
––
MD5:  ––
SHA256:  ––
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\scriptCache-child-current.bin
gmc
MD5: eea17f67fd57174d29c5ede8dc944b42
SHA256: 807ad7cf5a6bb45426ca2ed79856ad4a141a11acbdde540fd4c10c8bbf01a687
2980
firefox.exe
C:\Users\admin\AppData\Local\Mozilla\Firefox\Profiles\qldyz51w.default\startupCache\urlCache-current.bin
gmc
MD5: 50c27fc71b8eb413f290e0a0e0a0f30e
SHA256: cac301e92bd8b54a2baf8dec1aa1f58707f5ad9fa4958b64eedd900dd667fe45
2980
firefox.exe
C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\qldyz51w.default\prefs-1.js
––
MD5:  ––
SHA256:  ––

Find more information of the staic content and download it at the full report

Network activity

HTTP(S) requests
16
TCP/UDP connections
57
DNS requests
99
Threats
0

HTTP requests

PID Process Method HTTP Code IP URL CN Type Size Reputation
2980 firefox.exe GET 200 88.221.144.128:80 http://detectportal.firefox.com/success.txt IT
text
whitelisted
2980 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2980 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2980 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2980 firefox.exe POST 200 104.18.25.243:80 http://ocsp.msocsp.com/ US
binary
der
whitelisted
2980 firefox.exe POST 200 104.18.25.243:80 http://ocsp.msocsp.com/ US
binary
der
whitelisted
2980 firefox.exe POST 200 104.18.25.243:80 http://ocsp.msocsp.com/ US
binary
der
whitelisted
2980 firefox.exe POST 200 172.217.21.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2980 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2980 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2980 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2980 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2980 firefox.exe GET 200 88.221.144.128:80 http://detectportal.firefox.com/success.txt IT
text
whitelisted
2980 firefox.exe POST 200 93.184.220.29:80 http://ocsp.digicert.com/ US
binary
der
whitelisted
2980 firefox.exe POST 200 172.217.21.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted
2980 firefox.exe POST 200 172.217.21.227:80 http://ocsp.pki.goog/GTSGIAG3 US
binary
der
whitelisted

Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID Process IP ASN CN Reputation
2980 firefox.exe 88.221.144.128:80 Akamai International B.V. IT unknown
2980 firefox.exe 52.239.152.129:443 Microsoft Corporation US suspicious
2980 firefox.exe 52.35.34.27:443 Amazon.com, Inc. US unknown
2980 firefox.exe 54.190.222.97:443 Amazon.com, Inc. US unknown
2980 firefox.exe 93.184.220.29:80 MCI Communications Services, Inc. d/b/a Verizon Business US whitelisted
2980 firefox.exe 54.186.163.246:443 Amazon.com, Inc. US unknown
2980 firefox.exe 99.86.1.62:443 AT&T Services, Inc. US unknown
2980 firefox.exe 95.100.79.183:443 Akamai Technologies, Inc. –– unknown
2980 firefox.exe 152.199.19.160:443 MCI Communications Services, Inc. d/b/a Verizon Business US whitelisted
2980 firefox.exe 104.18.25.243:80 Cloudflare Inc US shared
2980 firefox.exe 52.109.88.104:443 Microsoft Corporation NL whitelisted
2980 firefox.exe 172.217.22.10:443 Google Inc. US whitelisted
2980 firefox.exe 172.217.21.227:80 Google Inc. US whitelisted
2980 firefox.exe 13.107.6.156:443 Microsoft Corporation US whitelisted
2980 firefox.exe 2.18.232.217:443 Akamai International B.V. –– unknown
2980 firefox.exe 13.107.6.168:443 Microsoft Corporation US whitelisted
2980 firefox.exe 23.37.48.112:443 Akamai Technologies, Inc. NL whitelisted
2980 firefox.exe 40.101.12.2:443 Microsoft Corporation NL unknown
2980 firefox.exe 2.16.186.25:443 Akamai International B.V. –– whitelisted
2980 firefox.exe 23.210.252.93:443 Akamai International B.V. NL unknown
2980 firefox.exe 34.223.207.155:443 Amazon.com, Inc. US unknown
2980 firefox.exe 52.222.157.83:443 Amazon.com, Inc. US unknown
2980 firefox.exe 5.57.226.202:443 ServiHosting Networks S.L. ES suspicious
2980 firefox.exe 34.215.70.240:443 Amazon.com, Inc. US unknown
2980 firefox.exe 104.18.24.243:80 Cloudflare Inc US shared
2980 firefox.exe 52.222.167.59:443 Amazon.com, Inc. US unknown
2980 firefox.exe 52.222.157.111:443 Amazon.com, Inc. US unknown
2980 firefox.exe 35.160.159.212:443 Amazon.com, Inc. US unknown
2980 firefox.exe 52.34.127.169:443 Amazon.com, Inc. US unknown
2980 firefox.exe 52.36.229.214:443 Amazon.com, Inc. US unknown
2980 firefox.exe 172.217.16.206:443 Google Inc. US whitelisted
2980 firefox.exe 64.15.117.18:443 Google Inc. US unknown

DNS requests

Domain IP Reputation
detectportal.firefox.com 88.221.144.128
88.221.144.105
whitelisted
eastexch030serverdatanet.z13.web.core.windows.net 52.239.152.129
unknown
aus5.mozilla.org 52.35.34.27
52.43.79.30
35.165.116.96
52.34.120.127
34.218.159.169
52.40.226.98
35.161.58.143
54.213.5.202
whitelisted
web.bl6prdstr09a.store.core.windows.net 52.239.152.129
unknown
a1089.dscd.akamai.net 88.221.144.105
88.221.144.128
whitelisted
balrog-aus5.r53-2.services.mozilla.com 54.213.5.202
35.161.58.143
52.40.226.98
34.218.159.169
52.34.120.127
35.165.116.96
52.43.79.30
52.35.34.27
whitelisted
search.services.mozilla.com 54.190.222.97
52.11.30.237
34.215.70.240
whitelisted
search.r53-2.services.mozilla.com 34.215.70.240
52.11.30.237
54.190.222.97
whitelisted
ocsp.digicert.com 93.184.220.29
whitelisted
cs9.wac.phicdn.net No response whitelisted
tiles.r53-2.services.mozilla.com No response whitelisted
tiles.services.mozilla.com 54.186.163.246
52.42.232.148
34.210.151.118
34.209.86.85
34.213.89.114
52.43.91.152
54.149.115.79
34.208.138.0
whitelisted
snippets.cdn.mozilla.net 99.86.1.62
whitelisted
drcwo519tnci7.cloudfront.net 99.86.1.62
whitelisted
secure.aadcdn.microsoftonline-p.com 95.100.79.183
whitelisted
e13761.dscg.akamaiedge.net 95.100.79.183
whitelisted
ajax.aspnetcdn.com 152.199.19.160
shared
cs22.wpc.v0cdn.net 152.199.19.160
unknown
ocsp.msocsp.com 104.18.25.243
104.18.24.243
whitelisted
ocsp.globalsign.cloud 104.18.24.243
104.18.25.243
malicious
portal.microsoftonline.com 52.109.88.104
whitelisted
eur.portal.microsoftonline.akadns.net 52.109.88.104
unknown
safebrowsing.googleapis.com 172.217.22.10
whitelisted
ocsp.pki.goog 172.217.21.227
whitelisted
pki-goog.l.google.com 172.217.21.227
whitelisted
portal.office.com 13.107.6.156
whitelisted
b-0004.b-msedge.net 13.107.6.156
whitelisted
prod.msocdn.com 2.18.232.217
whitelisted
e14579.dspg.akamaiedge.net 2.18.232.217
whitelisted
www.office.com 13.107.6.156
whitelisted
blob.officehome.msocdn.com 23.37.48.112
unknown
www.odwebp.svc.ms 13.107.6.168
unknown
b-0013.b-msedge.net 13.107.6.168
unknown
e12520.g.akamaiedge.net 23.37.48.112
unknown
outlook.office365.com 40.101.12.2
52.97.135.114
40.101.121.34
40.101.12.50
whitelisted
AMS-efz.ms-acdc.office.com No response unknown
spoprod-a.akamaihd.net 2.16.186.25
2.16.186.40
whitelisted
a1531.g2.akamai.net 2.16.186.40
2.16.186.25
whitelisted
r4.res.office365.com 23.210.252.93
whitelisted
e1875.dscg.akamaiedge.net 23.210.252.93
whitelisted
shavar.services.mozilla.com 34.223.207.155
52.42.122.34
52.36.109.121
52.24.56.107
52.40.28.81
52.25.98.1
whitelisted
shavar.prod.mozaws.net 52.25.98.1
52.40.28.81
52.24.56.107
52.36.109.121
52.42.122.34
34.223.207.155
whitelisted
tracking-protection.cdn.mozilla.net 52.222.157.83
52.222.157.114
52.222.157.31
52.222.157.63
whitelisted
d1zkz3k4cclnv6.cloudfront.net No response whitelisted
officecomowa.webcindario.com 5.57.226.202
unknown
server.webcindario.com No response unknown
firefox.settings.services.mozilla.com 52.222.167.59
52.222.167.170
52.222.167.91
52.222.167.241
whitelisted
d2k03kvdk5cku0.cloudfront.net 52.222.167.241
52.222.167.91
52.222.167.170
52.222.167.59
whitelisted
content-signature.cdn.mozilla.net 52.222.157.111
52.222.157.38
52.222.157.96
52.222.157.30
whitelisted
d12uj65dsn9ho1.cloudfront.net 52.222.157.30
52.222.157.96
52.222.157.38
52.222.157.111
whitelisted
incoming.telemetry.mozilla.org 35.160.159.212
35.166.68.10
35.161.6.28
54.70.141.88
35.165.148.158
34.214.74.24
52.89.38.17
35.162.26.63
whitelisted
pipeline-edge-prod-25-561439127.us-west-2.elb.amazonaws.com 35.162.26.63
52.89.38.17
34.214.74.24
35.165.148.158
54.70.141.88
35.161.6.28
35.166.68.10
35.160.159.212
shared
push.services.mozilla.com 52.36.229.214
unknown
autopush.prod.mozaws.net No response whitelisted
redirector.gvt1.com 172.217.16.206
whitelisted
r7---sn-oapm-guhe.gvt1.com 64.15.117.18
whitelisted
r7.sn-oapm-guhe.gvt1.com No response whitelisted

Threats

No threats detected.

Debug output strings

No debug info.