Hi all,
Aside from playing pool, I am also a computer software security researcher. I took a look at the layani cues Web site code for the page that popped-up in NOD32.
It looks like there is a remnant of code in the page that was possibly malicious at one time (maybe still is), NOD32 would probably trigger on the code even if it is no longer malicious. The code rotates out content, and it could be that if it is still malicous code, that it only sometimes serves-up the malicious code.
I contacted Layani Cues via email and let them know... Hopefully they will understand the importance of checking the Web site and purging the problem HTML.
Cheers,
Abs