Profile cover photo
Profile photo
mal forsec
17 followers -
@malforsec
@malforsec

17 followers
About
Posts

Post has attachment
Sundown Exploit kit
Seeing that Sundown EK have evolved lately I got curious and wanted to take a look at what new trickery this EK had come up with. I looked at it when it started to rise last summer, but back then it was not very adwanced and looked to had stolen most of the...

Post has attachment
Nuclear pack (explit kit) landing pane details
A look at the landing pane of Nuclear pack It was a long time since I looked at the landing pane of Nuclear exploit kit when I saw the post from Brad ( @malware_traffic ) over at malware-traffic-anlysis.ne t. Thanks to him for the live redirector :). So I w...

Post has attachment
Sweet Orange EK landing pageanalysis
It's been a while since I looked at the Sweet Orange EK in detail. The other day I got around to have a look at it again. Thanks to @kafeine for providing hints to the live kit. The landing is obfuscated JavaScript and looks like this: <li id="DzrVTywSMP" ...

Post has attachment
Merry Christmas! - GonDad style
Or analysis of the GonDad Exploit kit - AKA KaiXin exploit pack. This time of year we normally want to hear the familiar HO HO HO from father Christmas, but some evil doers want it different and instead want to do harm and make money the wrong way during th...

Post has attachment
Unknown EK - Analysis
Last Friday, the 6th of December, I saw a tweet by @Set_Abominea about an unknown exploit kit: Unknown EK: http://t.co/iYLPMTZRw3 — Set Abominae (@Set_Abominae) December 6, 2013 I went away for the week-end and when I got back Sunday night I was curious to ...

Post has attachment
Quick look at the new landing page for Neutrino Exploit Kit

Post has attachment
Neutrino landing changed ... again
The Neutrino EK landing page have changed. Yet another POST is now required to get to the exploits of this kit. The change probable happened a few weeks ago. Silently added by @cafeine over at malware.dontneedcoffee.com  or at least the usage of plugin dete...

Post has attachment
Neutrion EK - IE exploit analysis
More Neutrino stuff on the menu. Hopefully you find it better than spam and are not tired of my Neutrino adventures. As I have just come ...

Post has attachment

Post has attachment
Wait while more posts are being loaded