An¨¢lisis realizado por : Jesa Golez

 Fecha/hora de bloqueo de la URL martes, 26 de febrero de 2013 13:25:00 GMT-8
 Clasificaci¨®n: : High
 Dominio : admin0805.gnway.net
&²Ô²ú²õ±è;°ä²¹³Ù±ð²µ´Ç°ù¨ª²¹: Disease Vector
&²Ô²ú²õ±è;¶Ù±ð²õ³¦°ù¾±±è³¦¾±¨®²Ô:

BKDR_RARSTONE.A connects to this site to send and receive commands from a remote malicious user. The malware uses similar techniques as those of PlugX, including process injection and use of blob file.