I've noticed that alot of these website virus' are ran without the user being aware. In the past I've looked into one of these websites and noticed that when you visit the site it automatically runs a .vbs files as soon as the site opens and you never even see it. Once the .vbs file has run it creates a .ini file within the windows root and expands from there infecting mainly mIRC folders among other locations so to rebuild itself upon removal. This may have just been a weak mIRC/IRC trojan type infection but none-the-less it runs the same rule in my opinion. I've found if you install a simple program called Script Defender from analogx you can stop anything from running as long as the extension is listed in the program as a blocked extension.