Well, seems they're not keeping on top of it that well, still a few from this morning still active;
These are redirecting to download2d.com, which then redirects to various locations. Most phishing, and one or two SMS fraud/malware.
andrloads-v55.ru uses a .jar that calls out to mobirools.ru, and then via wap4mobi.ru, downloads a .3gp file via the following;
Alert: Eventbee.com abuse
Formspring.me: Second verse, same as the first
Formspring.me abuse continuing
Alert: formspring.me abuse surge
Real International Business Corp = NatCoWeb (AS46636)