OK, Pondus, thanks and with you here, my friend, but the missed detection should be reported to VT…
On the other hand google safebrowsing blocks a vist to the redirected site anyways, so a lot of browser users (like those on fx and chrome) are being protected,
but that is not the point. Topic is about detection discrepancies…
The IDS alerts comes from theseso-called flash rules:
1 24889 FILE-FLASH Action InitArray stack overflow attempt off off drop
1 24890 FILE-FLASH Action InitArray stack overflow attempt off drop off
1 24891 FILE-FLASH Action InitArray stack overflow attempt off off drop
1 24892 FILE-FLASH Action InitArray stack overflow attempt off off drop
1 24893 FILE-FLASH Action InitArray stack overflow attempt off drop off
1 24894 FILE-FLASH Action InitArray stack overflow attempt off off drop
1 24895 FILE-FLASH Adobe Flash Player ActionScript bytecode symbolclass tag type confusion attempt off drop drop
1 24896 FILE-FLASH Adobe Flash Player ActionScript bytecode symbolclass tag type confusion attempt off drop drop
Domain seems down: Down: NA RIPE NL abuse at leaseweb.com 95.211.80.118 to 95.211.80.118 bazisaz.com htxp://www.dl.bazisaz.com/edu/gamemaker/gamemaker-01.flv