Blood Bank left under a malware cloud by website designer

SophosLabs has numerous automated systems that help analysts with day-to-day tasks. Everyday Fraser and I get emailed a list of infected websites. This morning one in particular piqued my interest. It was for a Blood Bank in Asia my thoughts were drawn to the numerous references to Blood Banks in popular culture (see 1, 2).


As you can see a number of other websites are also infected. This chain consists of Mal/ObfJS-AB, Mal/Psyme-A to Mal/ZBot-A.

While investigating the legitimacy of the Blood Bank website I noticed that its website was written and hosted by a Web Design company in the same Asian country. Upon visiting that site I receive numerous warning about infected content.