Tag Archives: exploit kit

The Resurrection of RedKit

“RedKit” was once a thriving exploit pack then faded away leaving behind artifacts on several abandoned hosts which are still triggering broken redirection alerts to this day. Within the past couple of months, however, we are witnessing a deliberate return … Continue reading

Posted in Exploit Packs | Tagged , , , , | Comments Off on The Resurrection of RedKit

Analyzing DotkaChef Exploit Pack

“DotkaChef” (aka DotCache, DotCacheF) was discovered by Chris Wakelin (@EKwatcher) several months ago. Today we noticed that several things have changed but it’s functionally the same. If you look closely at the websites infecting visitors’ computers linked to “DotkaChef”, they … Continue reading

Posted in Exploit Packs, Malscript | Tagged , , , , | Comments Off on Analyzing DotkaChef Exploit Pack

Wild Wild West – 12/2013

Added the following packs: White Lotus CK Exploit Kit “x2o Exploit Kit” “Angler Exploit Kit” “HiMan Exploit Kit” “Magnitude Exploit Kit” LightsOut Exploit Kit “Goon Exploit Kit” Special thanks to Kafeine for his feedback and numerous contributions!

Posted in Exploit Packs | Tagged | Comments Off on Wild Wild West – 12/2013

Deobfuscating Magnitude Exploit Kit

Per a couple of reader’s request, I’ll be covering how to deobfuscate Magnitude using the latest version of Converter. For those of you who don’t already know the history of Magnitude EK, you can catch up by checking out the … Continue reading

Posted in Exploit Packs, Malscript, Tools | Tagged , , , , , , | Comments Off on Deobfuscating Magnitude Exploit Kit

Kore Exploit Kit

Recently, a reader passed on to me a very active TDS link that redirected users to one of four exploit packs. These packs led to some form of ransomware being installed on the victim’s machine. Analysis of these packs have … Continue reading

Posted in Exploit Packs, Malscript | Tagged , , , , , , | Leave a comment