Hi malware fighters,
Occasionally look here: http://blog.urlvoid.com/dangerous-websites-analyzed-in-urlvoid/
engines that detected the domain.
xxxtoolbar.com (66.152.93.119) (12 DETECTIONS)
spywarebot.com (174.123.38.26) (11 DETECTIONS)
install.xxxtoolbar.com (66.152.93.119) (11 DETECTIONS)
aroolohnet.ru (77.78.240.24) (11 DETECTIONS)
russianmomds.ru (59.53.91.195) (11 DETECTIONS)
spyeye100.org (88.208.252.193) (10 DETECTIONS)
kolpredv.com (77.221.153.141) (10 DETECTIONS)
xorg.pl (94.23.1.180) (10 DETECTIONS)
zerovir.com (85.12.46.203) (10 DETECTIONS)
zief.pl (91.188.59.197) (10 DETECTIONS)
d0ma1ns.info (188.65.73.170) (10 DETECTIONS)
nevereversite.ru (194.140.229.101) (10 DETECTIONS)
fast-scanneronline.org (91.188.60.3) (10 DETECTIONS)
– theautocompanyy.info (194.8.250.103) (10 DETECTIONS)
hjwbxhqr.cn (193.33.115.26) (9 DETECTIONS)
ophaeghaev.ru (97.101.146.174) (9 DETECTIONS)
parfaitpournous.com (200.115.112.222) (9 DETECTIONS)
– fnmaw.com (91.212.127.110) (9 DETECTIONS)
cquenceclothing.com (205.134.252.251) (9 DETECTIONS)
charter-x.biz (91.213.174.107) (9 DETECTIONS)
b00tlife.com (79.135.152.26) (9 DETECTIONS)
convart.com (213.163.89.55) (9 DETECTIONS)
threatnuker.com (72.44.67.7) (9 DETECTIONS)
vv00vv.biz (91.213.174.8) (9 DETECTIONS)
– krclear.com (194.8.250.60) (9 DETECTIONS)
– babah20122012.com (193.105.207.98) (9 DETECTIONS)
ramualdo.com (213.163.89.55) (9 DETECTIONS) *
chura.pl (91.188.59.197) (9 DETECTIONS)
spywarestop.com (174.123.38.26) (9 DETECTIONS)
vrituyes.in (91.212.198.157) (9 DETECTIONS)
technology-scanner.com (195.5.161.211) (9 DETECTIONS)
adwarealert.com (174.123.38.26) (9 DETECTIONS)
vvmmp.ru (195.98.50.102) (9 DETECTIONS)
directupdate.info (91.188.60.10) (9 DETECTIONS)
In these first two weeks were analyzed a total of 43367 unique websites and 12394 websites (28.5 %) were detected by at least 1 engine,
One example clarified: * ramualdo.com
http://wam.dasient.com/wam/infection_library/ed0b43ed3a68493d731b2650bbd03dce/ramualdo
http://wepawet.iseclab.org/view.php?hash=591a17090f26070fe272ab4da580c941&t=1269672405&type=js
about the malicious iFrames there:
http://badwarebusters.org/main/itemview/18671
polonus