That site is doing the redirecting, yes, but only if you perform the typo to be redirected to the wrong typo site. So the redirect is only valid there where you go to the typo site. That is how devious it is. A normal domain parked site can be used for parking an undemanded search site to score a couple of additional ad click dollars. This is not so here, this is a domain park for a typo site. If you would have given in the site without a typo, no problem would have occurred. Ask a touchscreen pencil for Xmas and feel safer...
The check is safe is that that redirect only changed your default search settings (without your approval of course), that is all the "malware hijacker"did to let you go to their searchsite and earn on fraudulous clicks. It is all about money, you know...
polonus