An¨¢lisis realizado por : Jeann Therese Muninio

 Fecha/hora de bloqueo de la URL lunes, 8 de julio de 2013 0:00:00 GMT-8
 Clasificaci¨®n: : High
 Dominio : FAQServ.com
&²Ô²ú²õ±è;°ä²¹³Ù±ð²µ´Ç°ù¨ª²¹: Disease Vector
&²Ô²ú²õ±è;¶Ù±ð²õ³¦°ù¾±±è³¦¾±¨®²Ô:

BKDR_POISON.BTA connects to this URL to send and receive commands from a remote malicious user. This malware uses DLL preloading, a technique more known to be utilized by PlugX.

Sobre el malware