PHP Malware Analysis

hagan.php

md5: ce6fb530128adfd194af114787911096

Jump to:

Screenshot

No Image

Attributes

Emails

Title

URLs


Deobfuscated PHP code

<html>
<head>
<script>alert("Pentested by MR.HAGAN_404CR4ZY");
              alert("MY DREAMS COUNTRY IS JAPAN");
              alert("I HOPE I CAN GO THERE ^_^");
              alert("I VERY WANT GO THERE");
              prompt("YOU NEED HELP? CONTACT ME : ahganahmaker6@gmail.com");
</script>
<meta name="theme-color" content="#000">
<title>P4WN3D by MR.HAGAN_404CR4ZY</title>
<meta property="og:image" content="https://j.top4top.io/p_1893fihbz0.png"> 
<meta name="description" content="pentested by S4174M4 "> 
<link rel="shortcut icon" href="https://j.top4top.io/p_1893fihbz0.png">
<body oncontextmenu='return false;' onkeydown='return false;' onmousedown='return false;'>
 <link rel="stylesheet" href="https://cdnjs.cloudflare.com/ajax/libs/animate.css/4.0.0/animate.min.css">
<link rel="stylesheet" href=" https://maxcdn.bootstrapcdn.com/font-awesome/4.7.0/css/font-awesome.min.css">
 <link href="https://fonts.googleapis.com/css2?family=Lato&display=swap" rel="stylesheet">
  <link href="https://fonts.googleapis.com/css2?family=Megrim&family=Pompiere&display=swap" rel="stylesheet">
        <link href="https://fonts.googleapis.com/css?family=Faster+One|Lacquer|Megrim|Nanum+Brush+Script&display=swap" rel="stylesheet"> 
</head>
<style>
        body {
            background: color(black) no-repeat center center fixed;
            -webkit-background-size: cover;
            -moz-background-size: cover;
            -o-background-size: cover;
            background-size: cover;
        }
</style>
<style type="text/css">
            .Brush{
                font-family: 'Nanum Brush Script', cursive;
            }
            .judul{
                font-family: 'Megrim',cursive;
            }
            .tell{
                font-family: 'Lacquer', sans-serif;
            }
       
</style></style>
<script type="text/javascript" src="https://cdn.rawgit.com/FicriPebriyana/efek/0a935a6c/efek%20salju.js"></script>
    </head>
    
<body bgcolor="black">
<table width=100% height=50%>
<td align=center>
     
<img src="https://j.top4top.io/p_1893fihbz0.png" widht="250" height="250"></br><br>


<font class="judul" size="7" color="red"><b> Pentested by </b> <font class="tell" size="7" color="Green">MR.HAGAN_404CR4ZY</font>
<br>
<font class="tell" size="5" color="red">No Team </font><br><br>
    <font class="tell" size="10" color="green"> &#65533; -=|| MR.HAGAN_404CR4ZY || NO TEAM ||=-  &#65533;</font>
<br><br>
<font class="judul" size="7" color="red">Greetz:</font><br>
<font class="tell" size="4" color="white">+</font>
<font class="tell" size="4" color="red">D4RK W1Z4RD</font>
<font class="tell" size="4" color="white">+</font>
<font class="tell" size="4" color="red">Foursdeath Team</font>
<font class="tell" size="4" color="white">+</font>
<br>
	<center>
   <audio src="https://j.top4top.io/m_19280rwtg0.mp3" autoplay="autoplay" controls="controls"></audio>
   </center>
   <br>
    <font class="Brush" size="7" color="Green"><em><br>&#65533;</em>
           <em>ahganahmaker6@gmail.com</em> <em>&#65533;</em></font>
    </td>
    </table>



</body>
    </html>

Execution traces

data/traces/ce6fb530128adfd194af114787911096_trace-1676251652.8495.xt
Version: 3.1.0beta2
File format: 4
TRACE START [2023-02-12 23:27:58.747341]
1	0	1	0.000150	393512
1	3	0	0.000193	397128	{main}	1		/var/www/html/uploads/hagan.php	0	0
1	3	1	0.000210	397128
			0.000235	314224
TRACE END   [2023-02-12 23:27:58.747453]


Generated HTML code


Original PHP code

<html>
<head>
<script>alert("Pentested by MR.HAGAN_404CR4ZY");
              alert("MY DREAMS COUNTRY IS JAPAN");
              alert("I HOPE I CAN GO THERE ^_^");
              alert("I VERY WANT GO THERE");
              prompt("YOU NEED HELP? CONTACT ME : ahganahmaker6@gmail.com");
</script>
<meta name="theme-color" content="#000">
<title>P4WN3D by MR.HAGAN_404CR4ZY</title>
<meta property="og:image" content="https://j.top4top.io/p_1893fihbz0.png"> 
<meta name="description" content="pentested by S4174M4 "> 
<link rel="shortcut icon" href="https://j.top4top.io/p_1893fihbz0.png">
<body oncontextmenu='return false;' onkeydown='return false;' onmousedown='return false;'>
 <link rel="stylesheet" href="https://cdnjs.cloudflare.com/ajax/libs/animate.css/4.0.0/animate.min.css">
<link rel="stylesheet" href=" https://maxcdn.bootstrapcdn.com/font-awesome/4.7.0/css/font-awesome.min.css">
 <link href="https://fonts.googleapis.com/css2?family=Lato&display=swap" rel="stylesheet">
  <link href="https://fonts.googleapis.com/css2?family=Megrim&family=Pompiere&display=swap" rel="stylesheet">
        <link href="https://fonts.googleapis.com/css?family=Faster+One|Lacquer|Megrim|Nanum+Brush+Script&display=swap" rel="stylesheet"> 
</head>
<style>
        body {
            background: color(black) no-repeat center center fixed;
            -webkit-background-size: cover;
            -moz-background-size: cover;
            -o-background-size: cover;
            background-size: cover;
        }
</style>
<style type="text/css">
            .Brush{
                font-family: 'Nanum Brush Script', cursive;
            }
            .judul{
                font-family: 'Megrim',cursive;
            }
            .tell{
                font-family: 'Lacquer', sans-serif;
            }
       
</style></style>
<script type="text/javascript" src="https://cdn.rawgit.com/FicriPebriyana/efek/0a935a6c/efek%20salju.js"></script>
    </head>
    
<body bgcolor="black">
<table width=100% height=50%>
<td align=center>
     
<img src="https://j.top4top.io/p_1893fihbz0.png" widht="250" height="250"></br><br>


<font class="judul" size="7" color="red"><b> Pentested by </b> <font class="tell" size="7" color="Green">MR.HAGAN_404CR4ZY</font>
<br>
<font class="tell" size="5" color="red">No Team </font><br><br>
    <font class="tell" size="10" color="green"> &#65533; -=|| MR.HAGAN_404CR4ZY || NO TEAM ||=-  &#65533;</font>
<br><br>
<font class="judul" size="7" color="red">Greetz:</font><br>
<font class="tell" size="4" color="white">+</font>
<font class="tell" size="4" color="red">D4RK W1Z4RD</font>
<font class="tell" size="4" color="white">+</font>
<font class="tell" size="4" color="red">Foursdeath Team</font>
<font class="tell" size="4" color="white">+</font>
<br>
	<center>
   <audio src="https://j.top4top.io/m_19280rwtg0.mp3" autoplay="autoplay" controls="controls"></audio>
   </center>
   <br>
    <font class="Brush" size="7" color="Green"><em><br>&#65533;</em>
           <em>ahganahmaker6@gmail.com</em> <em>&#65533;</em></font>
    </td>
    </table>



</body>
    </html>