firefox.exe
Firefox by Mozilla Corporation (Signed)
Warning 4 antivirus scanners has detected malware in various versions of firefox.exe.
Overview
firefox.exe has 107 known versions, the most recent one is 9.0.1. firefox.exe is run as a standard windows process with the logged in user's account privileges. During installation the program adds a job to the Task Scheduler. The average file size is about 845.5 KB. It is an authenticode code-signed executable issued to Mozilla Corporation by the certification authority Thawte. The programs Mozilla Firefox 15.0.1 (x86 en-US), Mozilla Firefox 17.0 (x86 en-US) and Mozilla Firefox 43.0.1 (x86 en-US) have been observed as installing specific variations of firefox.exe. During the process's lifecycle, the typical CPU resource utilization is less than 0.01%, the average private memory consumption is about 332.62 MB with the maximum memory reaching around 367.32 MB. Addionally, typically read and write I/O disk operations is about 4.83 MB per minute for reads and 12.51 MB per minute for writes.
What is firefox.exe?
Mozilla Firefox is a free and open source web browser developed by the Mozilla Foundation. Firefox uses the Gecko layout engine to render web pages, which implements current and anticipated web standards. Functions can be added through extensions, created by third-party developers. Firefox uses a sandbox security model, and limits scripts from accessing data from other web sites based on the same origin policy
About firefox.exe (from Mozilla Corporation)
“Mozilla Firefox is a fast, full-featured Web browser. Firefox includes pop-up blocking, tab-browsing, integrated Google search, simplified privacy controls, a streamlined browser window that shows you”
Details |
File name: | firefox.exe |
Publisher: | Mozilla Corporation |
Product name: | Firefox |
Typical file path: | C:\Program Files\mozilla firefox\firefox.exe |
Certificate |
Issued to: | Mozilla Corporation |
Authority (CA): | Thawte |
Effective date: | Monday, September 27, 2010 |
Expiration date: | Sunday, October 30, 2011 |
Programs installed in
(Note, the programs listed below are for all versions of Firefox.)
ACDSee Pro is an image organizer, viewer, and RAW / image editor programs for Microsoft Windows. ACDSee's main features are speed, lossless RAW/image editing, image batch processing, metadata (Exif/IP...
“FoxyTunes is an Extension for Mozilla Firefox that supports the Mozilla Suite and Mozilla Thunderbird. It allows you to control your favorite media player without leaving the browser. The controls are...”
Safari is a web browser developed by Apple Inc. It is based on the WebKit engine, which is a fork of KDE's KHTML engine. Safari has a number of features. Some are specific to certain operating systems...
Apple's iTunes is a proprietary media player computer program, used for playing and organizing digital music and video files on desktop computers. It can also manage contents on iPod, iPhone and iPad....
µTorrent is a is a free, ad-supported, lighter-weight BitTorrent client designed to consume less resources then the full BitTorrent version. Some uTorrent installs include potentially unwanted applic...
“Easy-PhotoPrint EX allows you to create albums, calendars and stickers easily using photos taken with digital cameras. Easy-PhotoPrint EX supports "Exif Print." Exif Print is a standard for enhancing ...”
“EaseUS Data Recovery Wizard does an amazing job on format recovery, unformat, deleted files recovery or lost data due to partition loss or damage, software crash, virus infection, unexpected shutdown ...”
Google Chrome is a free web browser developed by Google that uses the WebKit layout engine. It is designed to be secure, fast, simple and stable. Chrome supports plug-ins with the Netscape Plugin Appl...
HandBrake is a general-purpose, open-source, cross-platform, multithreaded video transcoder software application. HandBrake supports batch encoding through Windows graphical user interface (GUI) and ...
This program contains the driver that enables the IDT High-Definition (HD) Audio in supported notebook models that are running a supported operating system.
FL Studio is a digital audio workstation developed by the Belgian company Image-Line. FL Studio features a graphical user interface based on a pattern-based music sequencer. FL Studio can be used as a...
Behaviors
(Note, the behaviors below are for all versions of firefox.exe, select a unique version for details.)
Shell open commands
Windows firewall allowed programs
Exceptions allow programs to access to the Internet through an outbound connections
- Firewall exception for 'C:\Program Files\Mozilla Firefox\firefox.exe'
- Firewall exception for 'C:\Program Files\Mozilla Firefox\firefox.exe'
Scheduled tasks
- The task '{310FE50D-C94E-43E9-B757-F334EBE769EA}' runs on registration in the path '\{310FE50D-C94E-43E9-B757-F334EBE769EA}'
- The job '{005550A2-A5D2-4BE4-BA22-223256AB9412}' runs on registration in the path '\{005550A2-A5D2-4BE4-BA22-223256AB9412}'
- The job '{D51B6551-F44B-4162-94E3-DC4092A610DD}' runs on registration in the path '\{D51B6551-F44B-4162-94E3-DC4092A610DD}'
- The task '{C1B4CCF9-561C-40B9-8CF4-0EC01825E370}' runs on registration in the path '\{C1B4CCF9-561C-40B9-8CF4-0EC01825E370}'
- The task '{A51032A4-62B0-4A15-99CC-71B5F0F6886A}' runs on registration in the path '\{A51032A4-62B0-4A15-99CC-71B5F0F6886A}'
- The job '{83171C1C-A723-46EA-8D40-E26AF31D8630}' runs on registration in the path '\{83171C1C-A723-46EA-8D40-E26AF31D8630}'
- The task '{6275109A-237C-438C-A33B-9B9BB0221530}' runs on registration in the path '\{6275109A-237C-438C-A33B-9B9BB0221530}'
- The job '{02A8F7FD-73CC-4D5B-BD26-69B2307378CF}' runs on registration in the path '\{02A8F7FD-73CC-4D5B-BD26-69B2307378CF}'
- The job '{21D590D9-7502-446E-9F47-D31F3E35AF8F}' runs on registration in the path '\{21D590D9-7502-446E-9F47-D31F3E35AF8F}'
- The job '{01151A58-5D37-411A-94E2-1EE2B5B090D5}' runs on registration in the path '\{01151A58-5D37-411A-94E2-1EE2B5B090D5}'
- The task '{7C879694-C762-4E7D-BDEB-DE3326A34371}' runs on registration in the path '\{7C879694-C762-4E7D-BDEB-DE3326A34371}'
- The job '{6EBF20E3-88EC-41C3-AA83-2A11D2917056}' runs on registration in the path '\{6EBF20E3-88EC-41C3-AA83-2A11D2917056}'
- The job '{35D4F4BA-7571-4D11-94F2-1336B409F351}' runs on registration in the path '\{35D4F4BA-7571-4D11-94F2-1336B409F351}'
- Entry path '\{BE92812C-1B36-4FF0-90B0-725211FCBB1B}'
- Entry path '\{9E2D172B-0A78-44B2-8570-35475DE0E120}'
- Entry path '\{12051BE5-E7E5-4845-AEB6-D8CF3DB16CBB}'
- Entry path '\{7D7E927B-6373-4A6A-ABEF-9F0891A703FC}'
- Entry path '\{695850C0-9417-43C1-A964-153345C6F09A}'
- Entry path '\{0728002B-5E74-418C-9313-40E5F0C5572F}'
- Entry path '\{FA9B4667-8DA5-4885-83E3-85FADBA3D834}'
- Entry path '\{F9CEBADE-560F-4451-9B6D-9C74AAF9B63C}'
- Entry path '\{F913A0B8-70FE-48A6-A626-6157FFBA8E10}'
Malware detections
Based on 40+ industry antivirus scanners, 4 of them detected the following malware.
Antivirus engine | Engine version | Detection | File version |
Antiy Labs AVL |
2.0.3.7 |
Worm/Win32.WhiteIce.gen |
9.0.1 |
Antiy Labs AVL |
2.0.3.7 |
Backdoor/Win32.Rbot |
19.0 |
Antiy Labs AVL |
2.0.3.7 |
Worm/Win32.WhiteIce |
15.0 |
Emsisoft Anti-Malware |
3.0.0.596 |
Trojan.GenericKD.1515318 (B) |
20.0.1 |
All file variations of firefox.exe
Distribution by Windows OS
OS version | distribution |
Windows 7 Home Premium |
41.75% |
|
Windows 7 Ultimate |
18.50% |
|
Windows 8.1 |
8.50% |
|
Microsoft Windows XP |
8.25% |
|
Windows Vista Home Premium |
4.50% |
|
Windows 8.1 Pro |
4.25% |
|
Windows 7 Professional |
2.75% |
|
Windows 8 |
2.25% |
|
Windows 8 Pro |
1.75% |
|
Windows 8.1 Single Language |
1.50% |
|
Windows 8.1 N |
1.00% |
|
Windows 8.1 Pro with Media Center |
1.00% |
|
Windows 8.1 Enterprise |
1.00% |
|
Windows 8 Enterprise N |
0.75% |
|
Windows 8 Single Language |
0.75% |
|
Windows 8 Pro with Media Center |
0.75% |
|
Windows 7 Home Basic |
0.25% |
|
Windows 8.1 Pro Preview |
0.25% |
|
Windows Developer Preview |
0.25% |
|
Distribution by country
United States installs about 46.62% of Firefox.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Dell |
22.65% |
|
Hewlett-Packard |
20.92% |
|
ASUS |
16.51% |
|
Acer |
7.87% |
|
Toshiba |
7.68% |
|
Sony |
4.61% |
|
GIGABYTE |
4.03% |
|
Lenovo |
3.45% |
|
Compaq |
2.69% |
|
Samsung |
2.11% |
|
Gateway |
1.92% |
|
Alienware |
1.73% |
|
Intel |
1.54% |
|
Sahara |
1.34% |
|
American Megatrends |
0.96% |
|