Warning! We are currently in recovery mode. The complete archive is not available.

Sample details: 52c4a8a14c2aaea08dbe8f470db54d0d --

Hashes
MD5: 52c4a8a14c2aaea08dbe8f470db54d0d
SHA1: 0a13890525f5128187b9352f484d52bbfedcff1a
SHA256: 25a5f6822b28a11a45511dfc70cc2ad0e3a8d2c075ee8a2fe31d1d86d0356ae1
SSDEEP: 12:4D6vNJMcpfJkKmsjcD0Fr+VeLNmqJmr5t7fJkKmsjcD0Fr+VcJA7Fz4AEdeRmrab:NNJM2fJ4sdfH4t7fJ4sd7ARNEIvlCg
Details
File Type: HTML
Yara Hits
Source
http://lavishgost.tk/bull/uche/c33.exe
Strings
		<html> 
  <head>
    <title>lavishgost.tk</title>
    <meta http-equiv="refresh" content="1; URL=http://domain.dot.tk/p/?d=LAVISHGOST.TK&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549990687094"/>
    <script type="text/javascript">
    <!--
      function redir(){ var $fwd = 'http://domain.dot.tk/p/?d=LAVISHGOST.TK&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549990687094'; if(window.parent){ window.parent.location=$fwd; }else{ window.location=$fwd; }}
    //-->
    </script>
  </head>
  <body onload="redir()">
    <script language="text/javascript">
    <!--
      window.setTimeout('redir();', 50 * 1);
    //-->
    </script>
  </body>
</html>