What non-detected malware is on this site?

See: http://www.virustotal.com/url-scan/report.html?id=0c84c0c155752154571a25069bf1b8cf-1324848103
and
http://urlquery.net/report.php?id=13407
See: http://wepawet.iseclab.org/view.php?hash=0c84c0c155752154571a25069bf1b8cf&t=1324852489&type=js
Heuristic find unknown_html
Bestandsgrootte: 2679 bytes
Bestandstype: HTML document text
MD5: 8a729396e06a16e7cca4bd69aec36b08
SHA1: 5c85b1974684c7b8309dc55bf563c2e213979cf1

4 scripting exploits found: http://www.google.com/safebrowsing/diagnostic?site=lab.sdut.edu.cn
Is this a Zombie for Ddos attacks?

polonus

Sucuri say infected on -http://lab.sdut.edu.cn

Malware entry: MW:JS:150
http://sucuri.net/malware/malware-entry-mwjs150

VirusTotal
http://www.virustotal.com/file-scan/report.html?id=a4ea9171489e560f13cf01198cd784e80c45d4b46f72b57b5a2946e0f7f6acc3-1324856668

Pondus,

Thank you for confirming the actual threat as malware. This malware as we read at sucuri’s description link is very good at hiding for automated av detection. That is why there is still something left for us to do to add to detection ;D

polonus