Pages

Oct 18, 2012

Blackhole v2 Deobfuscation from Ruby Perspective

Throughout this post, credit goes to Hooked on Mnemonics.

In this post, we'll going to go through quick explanation on Blackhole v2 JavaScript obfuscation

Oct 12, 2012

51la Malware Embedded Attack

Early this morning, while doing normal stuff in front of laptop, I stumbled upon a URL which I have a feeling that it might be malicious: wbtg.51872210[.]com/ywtcpm120921/8ace3ds3f4fb.html.

Oct 2, 2012

An Evening with Blackhole Exploit Kit v2.0 III

From my previous post, I managed to get the PDF sample from the exploit page and consequently get the payload within the PDF exploit itself.