Sample details: f2b9df0fd1432f044369608067aad543 --

Hashes
MD5: f2b9df0fd1432f044369608067aad543
SHA1: 7386036147f07ce818f7814db97678a74701e7dc
SHA256: afe12e61f1c6e8d2b8334f6002091a8b383a363d34bd75d0198d87d0da4cd4f5
SSDEEP: 12:41UJMcpfJUAisjcD0Fr+dkUglmqJmr5t7fJUAisjcD0Fr+dkUdFoJA7Fz4AEdeRT:MUJM2fJUPsdRN4t7fJUPsdR6FCARNEIT
Details
File Type: HTML
Yara Hits
Source
http://advantiixspa.tk/bn/tl.exe
Strings
		<html> 
  <head>
    <title>advantiixspa.tk</title>
    <meta http-equiv="refresh" content="1; URL=http://domain.dot.tk/p/?d=ADVANTIIXSPA.TK&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549998720519"/>
    <script type="text/javascript">
    <!--
      function redir(){ var $fwd = 'http://domain.dot.tk/p/?d=ADVANTIIXSPA.TK&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549998720519'; if(window.parent){ window.parent.location=$fwd; }else{ window.location=$fwd; }}
    //-->
    </script>
  </head>
  <body onload="redir()">
    <script language="text/javascript">
    <!--
      window.setTimeout('redir();', 50 * 1);
    //-->
    </script>
  </body>
</html>