Sample details: dec8e7490f1599a44a7910d2b5a2164c --

Hashes
MD5: dec8e7490f1599a44a7910d2b5a2164c
SHA1: 772ec3d8a5827be68464a7e75f3e60e130f649e0
SHA256: 17568138353323e3e659bf2fa788f60c29d0d77d4a499076f0b51b293618ff3a
SSDEEP: 12:4JgXMcpfJqsRjcD0Frn6mqJmr5t7fJqsRjcD0FrneNdJA7Fz4AEdeRmral0wcFzg:zM2fJqwdn64t7fJqwdnOARNEIvlCg
Details
File Type: HTML
Yara Hits
Source
http://adcoops.ga/1/darv4_protected.msi
Strings
		<html> 
  <head>
    <title>adcoops.ga</title>
    <meta http-equiv="refresh" content="1; URL=http://domain.dot.tk/p/?d=ADCOOPS.GA&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1566330862781"/>
    <script type="text/javascript">
    <!--
      function redir(){ var $fwd = 'http://domain.dot.tk/p/?d=ADCOOPS.GA&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1566330862781'; if(window.parent){ window.parent.location=$fwd; }else{ window.location=$fwd; }}
    //-->
    </script>
  </head>
  <body onload="redir()">
    <script language="text/javascript">
    <!--
      window.setTimeout('redir();', 50 * 1);
    //-->
    </script>
  </body>
</html>