Hi chris_s,

It is outbound traffic that is potentially malicious, look here and at the end of that report:
http://www.threatexpert.com/report.aspx?md5=dcbd2b1ff45ed36c7fb9459a6b3e4fa7
&
http://www.threatexpert.com/report.aspx?md5=269dbdc6fddb6d48d9b1f10742ca77b1
Nameserver involved: http://www.dailychanges.com/ruqocyril.com/
suspicious: http://www.urlvoid.com/scan/ruqocyril.com

Unable to properly scan site. Site returning error (40x): HTTP/1.1 404 OK

polonus