PHP Malware Analysis

index.html

md5: 04846d3fe59f38798479eace12743f13

Jump to:

Screenshot


Attributes

Emails

Title

URLs


Deobfuscated PHP code

<!DOCTYPE html> <html lang="en"> <head> <meta charset="UTF-8"> <meta http-equiv="X-UA-Compatible" content="IE=edge"> <meta name="viewport" content="width=device-width, initial-scale=1.0"> <link href="https://fonts.googleapis.com/css2?family=Sedgwick+Ave+Display&display=swap" rel="stylesheet"> <link href="https://fonts.googleapis.com/css2?family=Unica+One&display=swap" rel="stylesheet"> <link href="https://fonts.googleapis.com/css2?family=Graduate&display=swap" rel="stylesheet"> <title>Pwned? BY KICK_OUT FT KARAX</title> <meta property="og:description" content="Security Is An Illusion"> <style> .content{ display: flex; flex-direction: column; justify-content: center; align-items: center; } .content img{ margin-top: 60px; } .content .text{ font-family: 'Sedgwick Ave Display', cursive; color: white; font-weight: 400; font-size: 25px; text-align: center; } .content .text-2{ font-family: 'Unica One', cursive; color: white; font-style: normal; font-weight: normal; font-size: 20px; line-height: 24px; text-align: center; } .content .text-3{ font-family: 'Graduate', cursive; color: white; font-style: normal; font-weight: normal; font-size: 15px; line-height: 18px; text-align: center; } .content .text-4{ font-family: 'Unica One', cursive; color: white; font-style: normal; font-weight: normal; font-size: 20px; line-height: 1px; text-align: center; } .red{ color: #FF1B1B; } .black{ color: #000000; } </style> </head> <body style="background-color: white;"> <div class="content"> <img src="https://i.top4top.io/p_22428c8q60.gif" width="304px" height="305px" alt="image-5" > <h1 class="text"><span class="black">Hacked BY <span class="red">KICK_OUT </span><span class="black">FT <span class="red">KARAX</h1> <h1 class="text-2"><span class="black">| KICK_OUT | QUEEN_NIGHT | KARAX | PHENOM | CALUTAX07 | G1L4N6_ST6R | RX7 | Pateh | DemonNipon | GILANG_GANS |<font> </center> </h1> <br> <p class="text-3"><span class="red">CONTACT : team9xid@my.id</span></p><p class="text-4"><span class="WHITE">#Silent2k20</span></p> <audio src="https://i.top4top.io/m_22216c1vt9.mp3" autoplay=""controls=""></audio> </div> </body> </html>

Execution traces


Generated HTML code

<html lang="en"><head> <meta charset="UTF-8"> <meta http-equiv="X-UA-Compatible" content="IE=edge"> <meta name="viewport" content="width=device-width, initial-scale=1.0"> <link href="https://fonts.googleapis.com/css2?family=Sedgwick+Ave+Display&amp;display=swap" rel="stylesheet"> <link href="https://fonts.googleapis.com/css2?family=Unica+One&amp;display=swap" rel="stylesheet"> <link href="https://fonts.googleapis.com/css2?family=Graduate&amp;display=swap" rel="stylesheet"> <title>Pwned? BY KICK_OUT FT KARAX</title> <meta property="og:description" content="Security Is An Illusion"> <style> .content{ display: flex; flex-direction: column; justify-content: center; align-items: center; } .content img{ margin-top: 60px; } .content .text{ font-family: 'Sedgwick Ave Display', cursive; color: white; font-weight: 400; font-size: 25px; text-align: center; } .content .text-2{ font-family: 'Unica One', cursive; color: white; font-style: normal; font-weight: normal; font-size: 20px; line-height: 24px; text-align: center; } .content .text-3{ font-family: 'Graduate', cursive; color: white; font-style: normal; font-weight: normal; font-size: 15px; line-height: 18px; text-align: center; } .content .text-4{ font-family: 'Unica One', cursive; color: white; font-style: normal; font-weight: normal; font-size: 20px; line-height: 1px; text-align: center; } .red{ color: #FF1B1B; } .black{ color: #000000; } </style> </head> <body style="background-color: white;"> <div class="content"> <img src="https://i.top4top.io/p_22428c8q60.gif" width="304px" height="305px" alt="image-5"> <h1 class="text"><span class="black">Hacked BY <span class="red">KICK_OUT </span><span class="black">FT <span class="red">KARAX</span></span></span></h1> <h1 class="text-2"><span class="black">| KICK_OUT | QUEEN_NIGHT | KARAX | PHENOM | CALUTAX07 | G1L4N6_ST6R | RX7 | Pateh | DemonNipon | GILANG_GANS |<font>  </font></span></h1><font> <br> <p class="text-3"><span class="red">CONTACT : team9xid@my.id</span></p><p class="text-4"><span class="WHITE">#Silent2k20</span></p> <audio src="https://i.top4top.io/m_22216c1vt9.mp3" autoplay="" controls=""></audio> </font></div><font>  </font></body></html>

Original PHP code

<!DOCTYPE html> <html lang="en"> <head> <meta charset="UTF-8"> <meta http-equiv="X-UA-Compatible" content="IE=edge"> <meta name="viewport" content="width=device-width, initial-scale=1.0"> <link href="https://fonts.googleapis.com/css2?family=Sedgwick+Ave+Display&display=swap" rel="stylesheet"> <link href="https://fonts.googleapis.com/css2?family=Unica+One&display=swap" rel="stylesheet"> <link href="https://fonts.googleapis.com/css2?family=Graduate&display=swap" rel="stylesheet"> <title>Pwned? BY KICK_OUT FT KARAX</title> <meta property="og:description" content="Security Is An Illusion"> <style> .content{ display: flex; flex-direction: column; justify-content: center; align-items: center; } .content img{ margin-top: 60px; } .content .text{ font-family: 'Sedgwick Ave Display', cursive; color: white; font-weight: 400; font-size: 25px; text-align: center; } .content .text-2{ font-family: 'Unica One', cursive; color: white; font-style: normal; font-weight: normal; font-size: 20px; line-height: 24px; text-align: center; } .content .text-3{ font-family: 'Graduate', cursive; color: white; font-style: normal; font-weight: normal; font-size: 15px; line-height: 18px; text-align: center; } .content .text-4{ font-family: 'Unica One', cursive; color: white; font-style: normal; font-weight: normal; font-size: 20px; line-height: 1px; text-align: center; } .red{ color: #FF1B1B; } .black{ color: #000000; } </style> </head> <body style="background-color: white;"> <div class="content"> <img src="https://i.top4top.io/p_22428c8q60.gif" width="304px" height="305px" alt="image-5" > <h1 class="text"><span class="black">Hacked BY <span class="red">KICK_OUT </span><span class="black">FT <span class="red">KARAX</h1> <h1 class="text-2"><span class="black">| KICK_OUT | QUEEN_NIGHT | KARAX | PHENOM | CALUTAX07 | G1L4N6_ST6R | RX7 | Pateh | DemonNipon | GILANG_GANS |<font> </center> </h1> <br> <p class="text-3"><span class="red">CONTACT : team9xid@my.id</span></p><p class="text-4"><span class="WHITE">#Silent2k20</span></p> <audio src="https://i.top4top.io/m_22216c1vt9.mp3" autoplay=""controls=""></audio> </div> </body> </html>