Hi malware fighters,
nooralislamschoolcom
Domain Hash 1cae95225313bfbbe1a61cf80beaa96b
IP Address 74.81.175.95
IP Hostname unknown.carohostingnet
IP Country US (United States)
AS Number 13618
AS Name CARONET-ASN - Carolina Internet, Ltd.
Detections 2 / 19 (11 %)
Status SUSPICIOUS
avast detects as JS-Agent-AS ;D
Do not go here, because drive-by-downloads found:
Threat Name: HTTP MS Office Web Components Code Exec 1
Location: hxtp://www.nooralislamschool.com/vb/archive/index.php/f-1.html?login=1
Threat Name: HTTP MS Office Web Components Code Exec 1
Location: hxtp://www.nooralislamschool.com/vb/archive/index.php?pda=1
Threat Name: HTTP MS Office Web Components Code Exec 1
Location: htxp://www.nooralislamschool.com/vb/archive/index.php/t-1.html?login=1
Threat Name: HTTP MS Office Web Components Code Exec 1
Location: hxtp://www.nooralislamschool.com/vb/archive/index.php/t-2.html?login=1
Threat Name: Direct link to HTTP MS Office Web Components Code Exec 1
Location: htxp://www.nooralislamschool.com/vb/archive/index.php/t-2.html
Direct link to: htxp://www.nooralislamschool.com/vb/login.php?do=login
Location: hxtp://www.nooralislamschool.com/vb/index.php
Threat Name: Direct link to HTTP MS Office Web Components Code Exec 1
Location: hxtp://www.nooralislamschool.com/vb/archive/index.php/f-1.html
Threat Name: Direct link to HTTP MS Office Web Components Code Exec 1
Location: htxp://www.nooralislamschool.com/vb/archive/index.php/t-1.html
Direct link to: htxp://www.nooralislamschool.com/vb/archive/index.php/f-1.html
Location: htxp://www.nooralislamschool.com/vb/archive/index.php/f-2.html
Threat Name: Direct link to HTTP MS Office Web Components Code Exec 1
Location: htxp://www.nooralislamschool.com/vb/archive/index.php
Also consider: http://wepawet.iseclab.org/view.php?hash=08e4a5385ced8dd965174a34cf8fb5fd&t=1276120432&type=js
There is WSO tracking code there–
polonus