Hi Pondus,
The virscan may be ancient, the malvertising is not (the IDS alerts from URLquery are very recent).
What I mean to say is that the malvertising through that site seems to go on, while the site seems to have a clean bill of health everywhere.
Well aside from the IDS alerts I cannot find anything up...
This is just what the modern malvertiser likes most, keep a low profile and cash in on malvertising or when found out, comply and open shop elsewhere to continue business as usual. This is the new business scheme, the "loud" malware has already been put aside a long time ago...
polonus