...yeap,it's a false positive,probably triggered by specific 'keywords' that have been used in his post...
Danchev's work is widely known/recognized and it's blog is a highly recommended reading,
a definite 'must' for keeping track on newer malware trends...
we've also listed it in the 'Malware Analysis Blogs' thread.
The only 'warning' that deserves to be mentioned,at least in my poor point of view,
is that on occasion it gets way more 'political' than it should...and well,
let's just say that I prefer a more 'neutral' view when it comes to security related topics.