Experts at Zscaler security firm discovered several websites defaced by AnonGhostTeam hacktivists leading to Dokta Chef Exploit Kit and CVE-2014-6332 vulnerability. The hackers in particular used a malicious link in the defacement message to a lulz.htm page. The malicious payload was not reachable, but the VirusTotal Scan of the hostname shows a history of dubious activity. The technique is considered anomalous by the experts because hackers usually target government organizations and private business, but never hit end users.”]
Source: http://securityaffairs.co/wordpress/30633/hacking/anonghostteam-hacktivists-using-malware.html

