http://{BLOCKED}.130.35:8080/forum/viewtopic.php
Publish date: 02 de septiembre de 2013
Fecha/hora de bloqueo de la URL domingo, 1 de septiembre de 2013 20:20:00 GMT-8
Clasificaci¨®n: : High
Dominio : 198.57.130.35
&²Ô²ú²õ±è;°ä²¹³Ù±ð²µ´Ç°ù¨ª²¹: Disease Vector
&²Ô²ú²õ±è;¶Ù±ð²õ³¦°ù¾±±è³¦¾±¨®²Ô:
TSPY_FAREIT.AFM attempts to steal stored account information and other sensitive information and send the gathered information via HTTP POST to this URL. This FARFEIT variant is the final payload of a Blackhole Exploit Kit related spam run.