Hi Dim@rik,
Thanks for confirming the malware there is still "alive and kicking",
DrWeb detects this as BackDoor.Maxplus.91
So it is very much alive and VirusWatch has wrongly reported the malware to be dead.
Another reason to check and counter-check resources continuously....
There is more on that Ukranian IP:
http://urlquery.net/report.php?id=75489ET TROJAN Potential Blackhole Exploit Pack Binary Load Request
urlQuery Client ET CURRENT_EVENTS DRIVEBY Blackhole - Payload Download - readme.ex-
Good avast Networkshield has all of us protected here,
polonus