Hijacked web server used for drive-by malware installations. Deceptive web pages planted on hundreds of sites load a set of Java Scripts which in turn attempt to load a malicious webpage.
In this case it is located on krispykreme.co.id
Gary Warner links this to the Zeus bot, which steals passwords, and was recently involved in the arrest of a group of Ukrainians whole stole over million from US companies.
See more of the description of this problem at
[CVE-2010-0188, CVE-2010-1885, CVE-2012-0507]
A criminal Zeus botnet has been known to use this site in an attempt to spread malware.
Website's engaged in the use of browser, operating system and other such exploits,
aswell as those engaged in exploits via social engineering.
Scam and malware site.
The site is listed on hpHost.
krispykreme.co.id contains malware exploits. Stay away!