Threat vector: Legacy static HTML sites
blog.haschek.at
blog.haschek.at
Looks more like its the failure of site owners to update their sites, and to avoid unnecessary links to external resources... Especially when they accept payments on their sites?
As a web developer I've always worked hard to avoid paying for anything online that isn't backed by a multi-million dollar company, and even now those companies are vulnerable to compromise, so I get a disposable credit card for purchases online rather than using my personal bank or credit cards.
Buying the domain was a brilliant move though... I probably would have put up the webmaster's name on the embedded file to display something like [H1] -
"Hey Jerry, I told the guys at the shop last week that you should have given me a call concerning how your website was insecure!" :P
Sad but true.
p.s. europe is the most corrupted bunch of retards. I mean governments.