Detected a Dynamic DNS URL unknown_html_RFI_shell malware...

See: http://urlquery.net/report.php?id=7602504
See: https://www.virustotal.com/nl/url/06f1946e7ddd350a4b11ca557a4d9e412915ec050ad130e25969deaa9ba6d4c3/analysis/1384122267/
Bad web rep: http://www.mywot.com/en/scorecard/tbe-forum.ru?utm_source=addon&utm_content=popup-donuts

polonus

See why here: https://www.virustotal.com/nl/ip-address/141.138.117.195/information/

pol

There are more sites like the one mentioned: https://www.virustotal.com/nl/url/df637dcdd54b7bdaf1afb210050f1270512541df9dae41f813fffe9d32ad72f9/analysis/1384123881/
&
http://urlquery.net/report.php?id=7603127
Also via binfostat dot dyndns dot org → htxps://compilr.com/mjcmjc/teste/slb.php (test)
Here is a complete list of dynamic dns url providers to be blocked: http://mirror2.malwaredomains.com/files/dynamic_dns.txt

And then there is also this blacklist: http://sourceforge.net/projects/ddnsbl/
credits go here: http://ddnsbl.sourceforge.net/ zheck

D