See: http://killmalware.com/syoda.co.kr/#
See: https://www.virustotal.com/nl/url/c8d4b286884fe845eb152f17c1c397b77cdc72f4095fceb7aa7db3d9db1c5a98/analysis/1397312544/
See: http://sitecheck3.sucuri.net/results/www.jonedna.com
See: http://fetch.scritch.org/%2Bfetch/?url=http%3A%2F%2Fwww.jonedna.com%2F%3Fsquery%3D&useragent=Fetch+useragent&accept_encoding=
where we found the redirect here: https://www.virustotal.com/nl/url/ee96d0a693912836ce080fcb4241d885e1b8685abe31ae0d25d2de82ee249a52/analysis/1397312778/
The·URL·has·moved - Attacker can exploit vulnerability in CMS Resin Application Server 4.0.36 Source Code Disclosure Vulnerability.
IP malware history (some closed, dead, some up and alive: http://support.clean-mx.de/clean-mx/viruses.php?sort=firstseen%20desc&review=220.73.163.% )
polonus