http://{BLOCKED}159.166:8080/{generated value}

 Analysis by: Kenneth Guang Zheng Lee

 URL BLOCKING DATE/TIME: 31 Jan 2013 08:05:00 AM GMT-8
 RATING: HIGH
 DOMAIN: 84.38.159.166
 CATEGORY: Disease Vector
 DESCRIPTION:

BKDR_KULUOZ.PFG connects to this site to send and receive information. This malware disguises as delivery receipts for well-known postal and delivery services firms and airlines, including Delta Airlines and FedEx.