Warning! We are currently in recovery mode. The complete archive is not available.

Sample details: d95c8d52e27900ea210db7b7506c5ad8 --

Hashes
MD5: d95c8d52e27900ea210db7b7506c5ad8
SHA1: 4d5ec251b6add92c71f85de34d8040bd1c520b00
SHA256: ee95677a45de8b20153d8b7a386a8bb6ccd5e96d73cf9d5873310d1d197afde5
SSDEEP: 12:4E7McpfJMejcD0FrmGUumqJmr5t7fJMejcD0FrmGUIJA7Fz4AEdeRmral0wcFzHA:5M2fJMedtN4t7fJMedtFARNEIvlCg
Details
File Type: HTML
Yara Hits
Source
http://agodatex.ga/jeff/jefftwotwo.exe
Strings
		<html> 
  <head>
    <title>agodatex.ga</title>
    <meta http-equiv="refresh" content="1; URL=http://domain.dot.tk/p/?d=AGODATEX.GA&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549976775816"/>
    <script type="text/javascript">
    <!--
      function redir(){ var $fwd = 'http://domain.dot.tk/p/?d=AGODATEX.GA&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549976775816'; if(window.parent){ window.parent.location=$fwd; }else{ window.location=$fwd; }}
    //-->
    </script>
  </head>
  <body onload="redir()">
    <script language="text/javascript">
    <!--
      window.setTimeout('redir();', 50 * 1);
    //-->
    </script>
  </body>
</html>