Warning! We are currently in recovery mode. The complete archive is not available.

Sample details: fd4d7e2492499a497e1dc009e63712bd --

Hashes
MD5: fd4d7e2492499a497e1dc009e63712bd
SHA1: 09373a742d1a62cd51f94c1b54d523b659d4beed
SHA256: b8290f7e2300d118ea54d518b102dd649fb3ed4d24057ebbdea8b88a037eb972
SSDEEP: 12:4DFnMcpfJqjcD0Fr+mmqJmr5t7fJqjcD0Fr+wJA7Fz4AEdeRmral0wcFzHQL:SnM2fJqd54t7fJqdRARNEIvlCg
Details
File Type: HTML
Yara Hits
Source
http://blackat-com.gq/testingez/Loki_original.exe
Strings
		<html> 
  <head>
    <title>blackat-com.gq</title>
    <meta http-equiv="refresh" content="1; URL=http://domain.dot.tk/p/?d=BLACKAT-COM.GQ&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549999213359"/>
    <script type="text/javascript">
    <!--
      function redir(){ var $fwd = 'http://domain.dot.tk/p/?d=BLACKAT-COM.GQ&i=173.254.233.139&c=1&ro=0&ref=unknown&_=1549999213359'; if(window.parent){ window.parent.location=$fwd; }else{ window.location=$fwd; }}
    //-->
    </script>
  </head>
  <body onload="redir()">
    <script language="text/javascript">
    <!--
      window.setTimeout('redir();', 50 * 1);
    //-->
    </script>
  </body>
</html>