www.carambis.com

Media Fog Ltd

Domain Information

The domain www.carambis.com registered by Media Fog Ltd was initially registered in August of 2008 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Sloboda, Voronezh within Russia which resides on the RIPE Network Coordination Centre network.
Remove Malware from www.carambis.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Voronezh, Russia (RU)

Create date:
Wednesday, August 06, 2008

Expires date:
Saturday, August 06, 2016

Updated date:
Monday, July 06, 2015

ASN:
AS9002 RETN-AS RETN Limited

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ROSTPAY.CC, PUP.Installer.ROSTPAY.AA, PUP.Installer.ROSTPAY.i, PUP.Installer.ROSTPAY.DD, PUP.Installer.ROSTPAY.U, PUP.Installer.ROSTPAY.n, PUP.MediaFrog.ROSTPAY.Installer (M)
96.15%

ESET NOD32
Win32/Bundled.Toolbar.Ask (variant)
42.31%

Dr.Web
Program.Unwanted.328, Program.Unwanted.271
26.92%

avast!
Win32:PUP-gen [PUP], Win32:Agent-AYCR [PUP]
23.08%

Trend Micro House Call
TROJ_GEN.F47V1105, TROJ_GEN.F47V1103, TROJ_GEN.F47V0303, Suspicious_GEN.F47V0413, Suspicious_GEN.F47V0302
19.23%

herdProtect (fuzzy)
a variant of 9a8d7c74fd326b5889cc5683b4e2341cae948e21, a variant of dcbd5d3a68a3b78e13d3f5ee0cd69b825e0096bb, a variant of b1882d752cf8263ffee3d3eceaf7144f79762d36
11.54%

Baidu Antivirus
Hacktool.Win32.Bundled.bToolbar, Hacktool.Win32.Bundled.BToolbar
7.69%

Bkav FE
W32.Clodcbb.Trojan
3.85%

IKARUS anti.virus
Trojan.Win32.Agent
3.85%

The domain www.carambis.com has been seen to resolve to the following 2 IP addresses.

August 27, 2015

server6.freeteam.org
January 12, 2014

File downloads found at URLs served by www.carambis.com.

3 / 68      (PUP)

3 / 68      (PUP)

2 / 68      (PUP)

1 / 68      (PUP)

3 / 68      (PUP)

3 / 68      (PUP)

1 / 68      (PUP)

2 / 68      (PUP)
http://www.carambis.com/lp/.../driver_updater.html  (driverupdatersetupa-2.3.1.4215+1c41476963lz9.exe)

2 / 68      (PUP)

1 / 68      (PUP)
http://www.carambis.com/lp/.../software_updater_pro.html  (softwareupdaterprosetup-2.3.0.5303+1405m09u8y761.exe)

2 / 68      (PUP)

1 / 68      (PUP)

URL:
http://www.carambis.com/

Google Analytics:
UA-753548

Title:
“Carambis - system utilities”

SSL certificate subject:
CN=carambis.com

SSL certificate issuer:
CN=WoSign CA Free SSL Certificate G2, O=WoSign CA Limited, C=CN

Web server:
nginx

Facebook:
Likes:  134
Shares:  16
Comments:  9

Statistics are for the previous month.

Remove Malware from www.carambis.com - Powered by Reason Core Security