See: http://sitecheck.sucuri.net/scanner/?scan=http%3A%2F%2Fdiwang.42t.com
Site also blacklisted:
Type of malware: http://app.webinspector.com/url_details/16827367?cam_id=-9999&type=malware
See: http://www.quttera.com/detailed_report/diwang.42t.com
Potentially Suspicious
Reason: Detected unconditional redirection to external web resource. (potential risk combined with potentially risky http-methods )
Details:
See: https://www.virustotal.com/en/ip-address/5.9.48.143/information/
According to this the existing malware has been closed: http://support.clean-mx.de/clean-mx/viruses.php?ip=5.9.48.143&sort=firstseen%20DESC
Re: http://zulu.zscaler.com/submission/show/5c7ee1d11ee108e264cc71cbd67b1d3a-1380711187 (htxp://diwang.42t.com/logo.swf etc. flagged)
See: http://jsunpack.jeek.org/?report=4017316de0d9608717a280a68a1d52fb6a119e3e (Visit with NoScript active and in a VM)
polonus