http://{BLOCKED}.135.227:8080/jsbqmCA/hCpyb/Cnw/ED

 Analysis by: Giancarlo Ricamora

 URL BLOCKING DATE/TIME: 11 Apr 2013 08:20:00 PM GMT-8
 RATING: HIGH
 DOMAIN: 88.198.135.227:8080
 CATEGORY: Disease Vector
 DESCRIPTION:

BKDR_CRIDEX.CHX connects to this website to send and receive information. This malware was part of a Blackhole Exploit Kit (BHEK) spam campaign that used a fake CNN email about the Boston Marathon bombing.