Warning! We are currently in recovery mode. The complete archive is not available.

Sample details: 190348d79374de03862125b085389507 --

Hashes
MD5: 190348d79374de03862125b085389507
SHA1: 4c7c68e10db810b127feee2b417ac00db5b18e69
SHA256: 780282108201cdb131f4f8ee5e92c4c73aed318678aa9bda3eca85e89566a85b
SSDEEP: 12:4fIJMcpfJVtZisjcD0Fry1DjmqJmr5t7fJVtZisjcD0Fry1D6EdJA7Fz4AEdeRmI:8IJM2fJFisdy1J4t7fJFisdy1WwARNE8
Details
File Type: HTML
Yara Hits
Source
http://prapro.tk/netty/Signed%20PI.exe
Strings
		<html> 
  <head>
    <title>prapro.tk</title>
    <meta http-equiv="refresh" content="1; URL=http://domain.dot.tk/p/?d=PRAPRO.TK&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549951891141"/>
    <script type="text/javascript">
    <!--
      function redir(){ var $fwd = 'http://domain.dot.tk/p/?d=PRAPRO.TK&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549951891141'; if(window.parent){ window.parent.location=$fwd; }else{ window.location=$fwd; }}
    //-->
    </script>
  </head>
  <body onload="redir()">
    <script language="text/javascript">
    <!--
      window.setTimeout('redir();', 50 * 1);
    //-->
    </script>
  </body>
</html>