http://{BLOCKED}.94.212:8080/jsbqmCA/hCpyb/Cnw/ED

 Analysis by: Giancarlo Ricamora

 URL BLOCKING DATE/TIME: 10 May 2013 08:15:00 PM GMT-8
 RATING: HIGH
 DOMAIN: 156.56.94.212:8080
 CATEGORY: Disease Vector
 DESCRIPTION:

BKDR_CRIDEX.CHX connects to this website to send and receive information. This malware was part of a Blackhole Exploit Kit (BHEK) spam campaign that used a fake CNN email about the Boston Marathon bombing.