Download
Community
knowledgeBase
» www.centraltagvault.com
Overview
Analysis
IPs Addresses (6)
Downloads (4)
Network (6)
www.centraltagvault.com
Domain Information
Server location:
Oregon, United States (US)
ASN:
AS16509 AMAZON-02 - Amazon.com, Inc., US
Root domain:
centraltagvault.com
Analysis
Scanner detections:
Detections (67% detected)
Scan engine
Details
Detections
Reason Heuristics
PUP.installCore (M), PUP.InstallCore.FC.Installer (M)
100.00%
IPs Addresses
The domain www.centraltagvault.com has been seen to resolve to the following 6 IP addresses.
52.24.26.116
ec2-52-24-26-116.us-west-2.compute.amazonaws.com
May 12, 2016
54.148.57.212
ec2-54-148-57-212.us-west-2.compute.amazonaws.com
May 12, 2016
54.69.198.37
ec2-54-69-198-37.us-west-2.compute.amazonaws.com
May 12, 2016
54.69.11.66
ec2-54-69-11-66.us-west-2.compute.amazonaws.com
May 12, 2016
52.88.159.85
ec2-52-88-159-85.us-west-2.compute.amazonaws.com
May 12, 2016
52.25.41.73
ec2-52-25-41-73.us-west-2.compute.amazonaws.com
May 12, 2016
Downloads
File downloads found at URLs served by www.centraltagvault.com.
1 / 68 (PUP)
http://www.centraltagvault.com/WVl6OTRQVFZUZDJNNVRuZFBWa1l5VWpBMFIydHVkbEpQVGtsME1WbElOa016UW1KVWF6VldVMjFCVFdscVRWa2xNMFFtWXoxTFRVOTBSV1p2U2toVFYwNHlTM1pPU0VKQmJFcEdZblYzUlhSeWREWnRNVzV0V1dSSldVZDZjbG8yTVd4UU9XWmtWbU0zY3prNE5tZ3dTVmMxUVU5T2VXMDNOREF4VURoMFVERmxkalpSZG1KWVMyMHhaRTFxTUZsMmVWWm1iMmx2VUVaSFVrUklibGtsTWtZek4yNTVURzQxYzJ4TmFHMUlSR2x4WWpGMU5GaENha1ZXUVhGVmVteHlNRUpCUkdobUpUSkNhVmxRZEZOQkpUTkVKVE5FSm1VOU1DWmtiM2R1Ykc5aFpFRnpQWE4xY0dWeVgyMWhjbWx2WDJKeWIzTXVaWGhsSm1aaGJHeGlZV05yWDNWeWJEMW9kSFJ3SlROQkpUSkdKVEpHWjJGdFpXWmhZbkpwY1hWbExtTnZiU1V5Um1Sc0pUSkdibVZ6SlRKR2MzVndaWEpmYldGeWFXOWZZbkp2Y3k1bGVHVT0=
(setup.exe)
0 / 68
http://www.centraltagvault.com/c?x=jBxvtnQWUjnVYuqU1t6jsCjqmbd6o4s8Zy 1ATi1ao=&c=3k19DLwVqVmA/GFBrq3Lw4vWgZYpsoG78Lmi2ghYMlc8nBLO1ccCcG87GIo26TiygOEF4PSKS9E3fxEKNlJPw3HHz6I3VHnWrbVpn9QAj3U1tN5ZNVyoBZVwOj9ryCaphGO95Pla0Xh6fE0l6FdBh/dviBsG6uB/LLXWPwXBz9o=&e=0&downloadAs=double_dragon.exe&fallback_url=http://gamefabrique.com/dl/.../double_dragon.exe
(c834474dbd99e941243e2f3292079690)
1 / 68 (Adware)
http://www.centraltagvault.com/c?x=ChcNGwZooRUfoAFlNZMsS6kvibKXQXiain/h/pjqPVA=&c=bMJcEnKXyty9LapGWLWKoYvmhdBuwxdenqr3g3PmoQ1dGex J61YZtn0G1ff6KIksjQVxo8pkEOkIZzeXwpu iEVc38ntJobr1d4Xa8v8H/x42HJ89pomnlFIU2WJau &downloadAs=tiny_toon_adventures.exe&fallback_url=http://gamefabrique.com/dl/.../tiny_toon_adventures.exe
(a2e61a2be52664c11a6fe6432f0e2e2b)
1 / 68 (PUP)
http://www.centraltagvault.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
(setup.exe)
Network Communications
The following 6 files have been seen to comunicate with www.centraltagvault.com in live environments.
TCP »
52.24.26.116
:443
online-guardian-v2.0.9.exe
TCP »
52.24.26.116
:443
online-guardian-v2.0.9.exe
TCP »
52.24.26.116
:443
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.24.26.116
:443
036629fbd4864725737a8ba8fe7e8cd6.exe
TCP »
52.24.26.116
:443
rlvknlg.exe (Relevant-Knowledge by TMRG)
TCP »
52.24.26.116
:443
Proxomitron.exe (Proxomitron by Groom-A-Zebu (tm))
X