Warning! We are currently in recovery mode. The complete archive is not available.

Sample details: bbb8503a1dc804b95d0b856ede415d91 --

Hashes
MD5: bbb8503a1dc804b95d0b856ede415d91
SHA1: a3a796765fdf28054a8dd50b500bd7be954aa2c4
SHA256: 0c3acdad34b3bc81587019db9c61c2adb1612a9056a64fb715bcd414c84a52be
SSDEEP: 12:4WOIQJMcpfJttsjcD0Fr1RahOmqJmr5t7fJttsjcD0Fr1Ra2JA7Fz4AEdeRmralZ:LQJM2fJzsdbao4t7fJzsdbagARNEIvlZ
Details
File Type: HTML
Yara Hits
Source
http://battle-royale.tk/build_startup_2018-12-01_01-04.exe
Strings
		<html> 
  <head>
    <title>battle-royale.tk</title>
    <meta http-equiv="refresh" content="1; URL=http://domain.dot.tk/p/?d=BATTLE-ROYALE.TK&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549938384384"/>
    <script type="text/javascript">
    <!--
      function redir(){ var $fwd = 'http://domain.dot.tk/p/?d=BATTLE-ROYALE.TK&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549938384384'; if(window.parent){ window.parent.location=$fwd; }else{ window.location=$fwd; }}
    //-->
    </script>
  </head>
  <body onload="redir()">
    <script language="text/javascript">
    <!--
      window.setTimeout('redir();', 50 * 1);
    //-->
    </script>
  </body>
</html>