Site earlier used in watering place attack? Had Wintrim-E!

see: https://www.virustotal.com/nl/url/bf126e22825e9a3fe36ac80ae810f64f5ecb46adbd6df59aaa6181b4a69680fb/analysis/1384970250/
had a detectopn for PUA.Win32.Packer.MingwGcc-2 → http://urlquery.net/report.php?id=4056543

This seems the only malware from there up and active: htcp://www.prep2pass.com/dl/demo/FC0-U11-iengine-demo.exe
Not detected by avast → https://www.virustotal.com/nl/file/222f97ec67f55f1d3e2d3cd40aef86056a5116ad46740d8ddb40c779fa17cc8f/analysis/
malware known as Virus.Win32.Heur.c a.k.a. HW32.Laneul.vyey
Other detections for this malware come from: http://support.clean-mx.de/clean-mx/viruses.php?virusname=Virus.Win32.Heur.c&sort=id%20DESC

polonus

As I get reported now that paricular malcode no longer available from there, but there are still a lot of other places where it can be downloaded:
http://www.mywot.com/en/scorecard/getnow.com?utm_source=addon&utm_content=popup-donuts
Fir instance it is downloadable here and flagged: https://www.virustotal.com/nl/url/529ba36fed732dc3f1261a513d8c6d5200cd17bc5a43825dd5168bfa71983ee7/analysis/1384972132/
See Sucuri as the only one to flag: http://sitecheck.sucuri.net/results/download.cnet.com/prep2pass-fc0-u11-practice-test-engine/3010-20412_4-75711142.html see: http://zulu.zscaler.com/submission/show/bd304a28eb03099b249b31f99d77244e-1384972497
Probably safe? http://anubis.iseclab.org/?action=result&task_id=18ea72c56ec491a540d347f4ebded4a0a&format=html

pol