Tag Archives: dotcachef

Exploit Delivery Networks

Exploit packs are normally set up on a hacker-controlled server. Compromised websites or malicious email links lead unsuspecting users to the drive-by landing page on the server. While this keeps the main control panel, renter’s panel, crypter, statistics, etc all … Continue reading

Posted in Exploit Packs | Tagged , , , , , | Comments Off on Exploit Delivery Networks

Analyzing DotkaChef Exploit Pack

“DotkaChef” (aka DotCache, DotCacheF) was discovered by Chris Wakelin (@EKwatcher) several months ago. Today we noticed that several things have changed but it’s functionally the same. If you look closely at the websites infecting visitors’ computers linked to “DotkaChef”, they … Continue reading

Posted in Exploit Packs, Malscript | Tagged , , , , | Comments Off on Analyzing DotkaChef Exploit Pack

JJEncode Script Leads to Drive-By

The use of JJEncode in a drive-by download has been around for a couple of years but has been popping up a lot recently. A couple of readers have asked how to deobfuscate this so here’s a walkthrough with a … Continue reading

Posted in Exploit Packs, Malscript | Tagged , , | Leave a comment