Trend Micro Security

http://admin0805.{BLOCKED}y.net

 解析者: Jesa Golez

 ブロック日時: 2013年2月26日 13:25:00 GMT-8
 評価:
 ドメイン名: admin0805.gnway.net
 カテゴリ: Disease Vector
 概要 :

BKDR_RARSTONE.A connects to this site to send and receive commands from a remote malicious user. The malware uses similar techniques as those of PlugX, including process injection and use of blob file.

関連マルウェア