Warning! We are currently in recovery mode. The complete archive is not available.

Sample details: d84f6b91335d2cf52115d696657239b7 --

Hashes
MD5: d84f6b91335d2cf52115d696657239b7
SHA1: 1e42c34c265d7e0bde290b70f80adf93ec946b2d
SHA256: 04523d1fb5a12b3fbfc0542e9855297b0463bcfaabc571b0e8ee80d24a8fcafe
SSDEEP: 12:41XUWMcpfJvj2LjcD0FrZmmqJmr5t7fJvj2LjcD0FrZE3JA7Fz4AEdeRmral0wcO:+M2fJudZW4t7fJudZaARNEIvlCg
Details
File Type: HTML
Yara Hits
Source
http://findascholarship.ga/maBO6Wlm_SrZydZ_z9w76xR0P/Secure/Account///
Strings
		<html> 
  <head>
    <title>findascholarship.ga</title>
    <meta http-equiv="refresh" content="1; URL=http://domain.dot.tk/p/?d=FINDASCHOLARSHIP.GA&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549946772910"/>
    <script type="text/javascript">
    <!--
      function redir(){ var $fwd = 'http://domain.dot.tk/p/?d=FINDASCHOLARSHIP.GA&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549946772910'; if(window.parent){ window.parent.location=$fwd; }else{ window.location=$fwd; }}
    //-->
    </script>
  </head>
  <body onload="redir()">
    <script language="text/javascript">
    <!--
      window.setTimeout('redir();', 50 * 1);
    //-->
    </script>
  </body>
</html>