DoubleClick and MSN served up malware last week after they were tricked into displaying faked ads. The attackers used a fake domain name, only one character different, to get their malware posted on the services.