Do we take it that ETS has been virused? 
Probably not.  There's nothing to suggest that the ETS site's code has been compromised.  The spammer probably just harvested (copied) email addresses off the ETS site.  To actually get into site and hack the code can be done, but it's a far more sophisticated kind of attack, and getting into a site isn't typically a spammer's purpose; a spammer generally just wants your email address.