Tag Archives: flash

Reversing RIG EK’s Flash File

VirusTotal is showing 0 out of 51 for RIG EK’s SWFIE exploit (MD5: 65AFF3A3774298B3ED5BA2C43F8A1979). Here’s a really quick overview on how to reverse this exploit file so we can determine which vulnerability it’s using. This method can also be used … Continue reading

Posted in Exploit Packs, Malscript, Tools | Tagged , , | Comments Off on Reversing RIG EK’s Flash File

Sneaky Redirect to Exploit Kit

While I was testing a Pinpoint update, I found a sneaky method to redirect unsuspecting users to Neutrino EK. This one was interesting to me so I thought I would document it here. Here’s the website I visited…looks suspicious already: … Continue reading

Posted in Exploit Packs, Malscript | Tagged , , , | Comments Off on Sneaky Redirect to Exploit Kit

Chinese Exploit Packs

While it can be difficult to attribute exploit packs in many cases, I believe it’s safe to say that there are a few made by Chinese authors. Their style can be seen across packs from the script used for traffic … Continue reading

Posted in Exploit Packs | Tagged , , , , , , , , , | 4 Comments

CVE-2011-2140 Caught in the Wild

A Chinese website contains malvertisement that leads to a few exploits including the latest Flash exploit (CVE-2011-2140). Special thanks to Jason for the find and share! Here’s the website that kicks things off: This is the infection chain: It’s quite … Continue reading

Posted in 0-Day, Exploit Packs, Malscript | Tagged , , , , | 2 Comments

Flash Used in Idol Malvertisement

As the American Idol finale approaches, millions of people are keeping an eye on the results. So what better time to launch a new malvertisement campaign! This one can be found on a popular idol fan page. If you visit … Continue reading

Posted in Malscript | Tagged , , , | 1 Comment