... but this iframe doesn't work
Yeap,at the current moment,at least the referenced iframe link to goldwindos2000.com appears "inactive",
but this doesn't really mean a thing,that's why I referenced the ThreatExpert report...

I believe these lamers are currently in early stages of experimenting/searching new injection techniques,
so I wouldn't really concentrate much on the domain itself...
but more on which browser/web app might be vulnerable out there...