the nasty malicious site:
hxxp://teens.teenssites.net/1/anifile.php
Even AVG has it already ...
STATUS: FINISHED
Complete scanning result of "file.ani", received in VirusTotal at 05.05.2007, 08:59:33 (CET).
Antivirus Version Update Result
AhnLab-V3 2007.5.4.0 05.04.2007 Win-Trojan/Exploit-ANI.B
AntiVir 7.4.0.15 05.05.2007 EXP/Ani.Gen
Authentium 4.93.8 05.04.2007 no virus found
Avast 4.7.997.0 05.04.2007 CVE-2007-0038
AVG 7.5.0.467 05.04.2007 Downloader.Small.58.AW
BitDefender 7.2 05.05.2007 Exploit.Win32.MS05-002.Gen
CAT-QuickHeal 9.00 05.04.2007 Exploit.MS05-002
ClamAV devel-20070416 05.05.2007 Exploit.W32.MS05-002
DrWeb 4.33 05.04.2007 Exploit.ANIFile
eSafe 7.0.15.0 05.03.2007 no virus found
eTrust-Vet 30.7.3614 05.04.2007 Win32/MS07-017!exploit
Ewido 4.0 05.04.2007 no virus found
FileAdvisor 1 05.05.2007 no virus found
Fortinet 2.85.0.0 05.05.2007 W32/ANI07.A!exploit
F-Prot 4.3.2.48 05.04.2007 CVE-2007-1765
F-Secure 6.70.13030.0 05.04.2007 Exploit.Win32.IMG-ANI.k
Ikarus T3.1.1.7 05.05.2007 Exploit.Win32.IMG-ANI.i
Kaspersky 4.0.2.24 05.05.2007 Exploit.Win32.IMG-ANI.k
McAfee 5024 05.04.2007 Exploit-ANIfile.c
Microsoft 1.2503 05.05.2007 Exploit:Win32/Anicmoo.A
NOD32v2 2241 05.05.2007 a variant of Win32/TrojanDownloader.Ani.Gen
Norman 5.80.02 05.04.2007 RIFF/Ani_exploit.gen
Panda 9.0.0.4 05.04.2007 Exploit/LoadImage
Prevx1 V2 05.05.2007 no virus found
Sophos 4.17.0 05.04.2007 Troj/Animoo-U
Sunbelt 2.2.907.0 05.05.2007 Trojan-Exploit.Anicmoo.ax (v)
Symantec 10 05.05.2007 Trojan.Anicmoo
TheHacker 6.1.6.104 04.15.2007 no virus found
VBA32 3.11.4 05.04.2007 suspected of Exploit.Signature
VirusBuster 4.3.7:9 05.04.2007 Exploit.ANIFile.Gen
Webwasher-Gateway 6.0.1 05.05.2007 Exploit.Ani.Gen
Aditional Information
File size: 802 bytes
MD5: db534f464a6b58b214b85236c507dddb
SHA1: 5d94876ea021f345b1e0bf6acb0deb991e98f6d4