Re: http://killmalware.com/demonfit.com/
See: <meta content=“Hacked by people_hurt name=” description’=“”>'=“”> when you copy you won’t get '=“”
Detected as Trojan.Script.Heuristic-js.iacgm.
Flagged by Sucuri’s: http://sitecheck.sucuri.net/results/www.demonfit.com/
A misused ir defaced server also listed by MX: http://support.clean-mx.de/clean-mx/portals.php?ns3=ns3.cdmon.net&sort=id%20desc&response=alive
See the long OVERDUE! malcode running from these IP domains (158 domains on one and the same IP).
Found in the past: http://www.projecthoneypot.org/ip_134.0.14.63
Script inject from -cfs.u-ad dot info/cfspushadsv2/request (a scan with MBAM is advisabkle)
pol