http://admin0805.{BLOCKED}y.net
Publish Date: 05 marzo 2013
Data/ora blocco URL: martedì 26 febbraio 2013 13:25:00 GMT-8
Classificazione: : Alto
Dominio: : admin0805.gnway.net
Categoria: Disease Vector
Descrizione:
BKDR_RARSTONE.A connects to this site to send and receive commands from a remote malicious user. The malware uses similar techniques as those of PlugX, including process injection and use of blob file.