t4.liverail.com

It is installed within the Mozilla Firefox web browser as part of an addin/plugin. The file has been seen being downloaded from scontent.lrcdn.net and multiple other hosts.
MD5:
c2196de8ba412c60c22ab491af7b1409

SHA-1:
5fbd472222feb8a22cf5b8aa5dc5b8e13af88e2b

SHA-256:
6adc3d4c1056996e4e8b765a62604c78b1f867cceb3b15d0b9bedb7c4857f992

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 11:22:56 AM UTC  (today)

File size:
35 Bytes

Common path:
C:\users\{user}\appdata\roaming\mozilla\firefox\profiles\{user}.default\readitlater\ril_assets\t4.liverail.com

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
3:CUkrllHh/:qJ/

The file t4.liverail.com has been seen being distributed by the following 4 URLs.

http://scontent.lrcdn.net/.../lr.gif

https://d5p.de17a.com/.../stickyads

Scan t4.liverail.com - Powered by Reason Core Security