🚩 #404TDS was/is distributing a Java-based downloader (bazaar.abuse.ch/sample/f20585b…) that leads to the execution of a malicious AutoIt script. Possibly #DarkGate ? 🤔
Some 404TDS urls (geofenced): afarm[.]net/uvz2q affixio[.]com/emh0c affiliatebash[.]com/myu0f afcmanager[.]net/jxk6m…