Yandex marked

Blacklisted by Yandex via SOPHOS
See: http://killmalware.com/mrcl.ru/#
and https://www.virustotal.com/nl/url/1cf617e6230821c9c80d25b5b03d6f7fdeb1a7da46f6f83e2bb941125c934b60/analysis/1408993355/
flagged twice!
Outdated software makes site vulnerable: Joomla Version 2.5.8 for: htxp://mrcl.ru/language/en-GB/en-GB.ini
Joomla version outdated: Upgrade required.
Outdated Joomla Found: Joomla under 2.5.20 or 3.3
Outdated Web Server Nginx Found: nginx/1.2.2

plugins/system/addfullajax/js/fullajax.js
Severity: Potentially Suspicious
Reason: Detected potentially suspicious content.
Details: Detected potentially suspicious initialization of function pointer to JavaScript method document.write __tmpvar1746642910 = document.write;
Threat dump: see attached
Threat dump MD5: FB3DDC4AC51260BB3125FA443DEA777E
File size[byte]: 57333
File type: ASCII
MD5: D03627F844D2033459F5A45A4A689FD3
Scan duration[sec]: 2.942000

pol

Spam domains hosted on that IP: http://knujon.com/ips/195.208.1.105.html

pol

Webpage blocked by WOT as Malicious, also 4 files blocked by Avast.

Hi Steven Winderlich,

Good we are being protected.
Get no avast alert with ScriptSafe blocking in Google Chrome,
but both WOT and Bitdefender TrafficLight block site.
Netcraft risk status: http://toolbar.netcraft.com/site_report?url=http://mrcl.ru

Damian