download2.camfrog.com

AVM Software, Inc.

Domain Information

The domain download2.camfrog.com registered by AVM Software, Inc. was initially registered in August of 2002 through Network Solutions, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Hollywood, Florida within the United States which resides on the Prolexic Technologies, Inc. network.
Remove Malware from download2.camfrog.com - Powered by Reason Core Security
Registrar:
Network Solutions, LLC

Server location:
Florida, United States (US)

Create date:
Tuesday, August 13, 2002

Expires date:
Sunday, August 13, 2023

Updated date:
Tuesday, August 13, 2013

ASN:
AS32787 PROLEXIC-TECHNOLOGIES-DDOS-MITIGATION-NETWORK - Prolexic Technologies, Inc.

Root domain:

Scanner detections:
Detections  (67% detected)

Scan engine
Details
Detections

Malwarebytes
PUP.Optional.Spigot.A
100.00%

Dr.Web
Adware.Downware.1417
100.00%

ESET NOD32
Win32/Bundled.Toolbar.Ask (variant)
50.00%

Trend Micro House Call
TROJ_GEN.F47V1118
50.00%

ESET NOD32
Win32/Bundled.Toolbar.Ask (variant)
50.00%

Rising Antivirus
PE:Malware.XPACK/RDM!5.1
50.00%

The domain download2.camfrog.com has been seen to resolve to the following 10 IP addresses.

server-54-230-101-161.iad2.r.cloudfront.net
September 3, 2014

server-54-230-101-50.iad2.r.cloudfront.net
September 3, 2014

server-54-230-100-118.iad2.r.cloudfront.net
September 3, 2014

server-216-137-33-174.iad2.r.cloudfront.net
September 3, 2014

server-216-137-33-4.iad2.r.cloudfront.net
September 3, 2014

server-54-230-103-198.iad2.r.cloudfront.net
September 3, 2014

server-54-230-103-86.iad2.r.cloudfront.net
September 3, 2014

server-54-230-102-47.iad2.r.cloudfront.net
September 3, 2014

unknown.prolexic.com
February 6, 2014

unknown.prolexic.com
February 6, 2014

File downloads found at URLs served by download2.camfrog.com.

3 / 68      (PUP)

5 / 68      (PUP)
http://download2.camfrog.com/camfrog.exe  (b3d86124ae09c3f7e1d0a4105e1b3b60)

The following file have been seen to comunicate with download2.camfrog.com in live environments.

URL:
http://download2.camfrog.com/

SSL certificate subject:
CN=*.camfrog.com, OU=Domain Control Validated

SSL certificate issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, O="GoDaddy.com, Inc."

Web server:
nginx

30 of 44 related domains

Remove Malware from download2.camfrog.com - Powered by Reason Core Security