Category Archives: Exploit Packs

The Resurrection of RedKit

“RedKit” was once a thriving exploit pack then faded away leaving behind artifacts on several abandoned hosts which are still triggering broken redirection alerts to this day. Within the past couple of months, however, we are witnessing a deliberate return … Continue reading

Posted in Exploit Packs | Tagged , , , , | Comments Off on The Resurrection of RedKit

Analyzing DotkaChef Exploit Pack

“DotkaChef” (aka DotCache, DotCacheF) was discovered by Chris Wakelin (@EKwatcher) several months ago. Today we noticed that several things have changed but it’s functionally the same. If you look closely at the websites infecting visitors’ computers linked to “DotkaChef”, they … Continue reading

Posted in Exploit Packs, Malscript | Tagged , , , , | Comments Off on Analyzing DotkaChef Exploit Pack

Wild Wild West – 12/2013

Added the following packs: White Lotus CK Exploit Kit “x2o Exploit Kit” “Angler Exploit Kit” “HiMan Exploit Kit” “Magnitude Exploit Kit” LightsOut Exploit Kit “Goon Exploit Kit” Special thanks to Kafeine for his feedback and numerous contributions!

Posted in Exploit Packs | Tagged | Comments Off on Wild Wild West – 12/2013

Deobfuscating Magnitude Exploit Kit

Per a couple of reader’s request, I’ll be covering how to deobfuscate Magnitude using the latest version of Converter. For those of you who don’t already know the history of Magnitude EK, you can catch up by checking out the … Continue reading

Posted in Exploit Packs, Malscript, Tools | Tagged , , , , , , | Comments Off on Deobfuscating Magnitude Exploit Kit

Deobfuscating the CK Exploit Kit

The CK Exploit Kit has been around since 2012 and has its roots in the NetBoom Exploiter kit according to security blog site CySecTa. You can read about its history and other information here. Output from the NB Exploiter doesn’t … Continue reading

Posted in Exploit Packs | Tagged , , | Comments Off on Deobfuscating the CK Exploit Kit