Threat Encyclopedia

http://{BLOCKED}.5.195:8080/jsbqmCA/hCpyb/Cnw/ED

Publish date: May 12, 2013

ANALYSIS BY

Giancarlo Ricamora


URL BLOCKING DATE/TIME: 06 Mar 2013 08:55:00 PM GMT-8
RATING: HIGH
DOMAIN: 202.29.5.195:8080
CATEGORY: Disease Vector
DESCRIPTION

BKDR_CRIDEX.CHX connects to this website to send and receive information. This malware was part of a Blackhole Exploit Kit (BHEK) spam campaign that used a fake CNN email about the Boston Marathon bombing.

Featured Stories

Connect with us on