iFrame malware detected and blocked but only after the redirect?

See: http://siteinspector.comodo.com/public/reports/show_log?id=13574344&type=malicious
see: http://ninjafirewall.com/malware/index.php?threat=2012-11-24.01
For the malicious code and decoded script, look here: http://evuln.com/tools/malware-scanner/banskolife.com/
avast! Web Shield detects after the redirect takes place JS:Iframe-AN[Trj] at htxp://www.mountain-paradise.co.uk/

pol

sucuri
http://sitecheck.sucuri.net/results/banskolife.com

Virustotal
https://www.virustotal.com/en-gb/file/fcb6aaca09fcc442f66735078ed9e8a1bbcce70736a6f99646d0ae169413ae41/analysis/1366147166/