Warning! We are currently in recovery mode. The complete archive is not available.

Sample details: 309f419e64d571cba7f06cc6bbbd1389 --

Hashes
MD5: 309f419e64d571cba7f06cc6bbbd1389
SHA1: 2c33aa35fa4e725e7fb71112204e183778b92375
SHA256: 029ba30beedd9939108b40282c16756e7a86c326b6e25acefee9a8e54f6e0186
SSDEEP: 12:4AU3McpfJhXcjcD0FrRXo/mqJmr5t7fJhXcjcD0FrRXYXJA7Fz4AEdeRmral0wcO:6M2fJhsdxoJ4t7fJhsdxYZARNEIvlCg
Details
File Type: HTML
Yara Hits
Source
http://beverage.cf/bless/pony%202.2/pony%202.2/builder/Builder.exe
Strings
		<html> 
  <head>
    <title>beverage.cf</title>
    <meta http-equiv="refresh" content="1; URL=http://domain.dot.tk/p/?d=BEVERAGE.CF&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549960826062"/>
    <script type="text/javascript">
    <!--
      function redir(){ var $fwd = 'http://domain.dot.tk/p/?d=BEVERAGE.CF&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549960826062'; if(window.parent){ window.parent.location=$fwd; }else{ window.location=$fwd; }}
    //-->
    </script>
  </head>
  <body onload="redir()">
    <script language="text/javascript">
    <!--
      window.setTimeout('redir();', 50 * 1);
    //-->
    </script>
  </body>
</html>