www.carambis.com

Media Fog Ltd

Domain Information

The domain www.carambis.com registered by Media Fog Ltd was initially registered in August of 2008 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Sloboda, Voronezh within Russia which resides on the RIPE Network Coordination Centre network.
Registrar:
GODADDY.COM, LLC

Server location:
Voronezh, Russia (RU)

Create date:
Wednesday, August 6, 2008

Expires date:
Saturday, August 6, 2016

Updated date:
Monday, July 6, 2015

ASN:
AS9002 RETN-AS RETN Limited

Root domain:

Scanner detections:
Detections  (94% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.ROSTPAY.T, PUP.MediaFrog.ROSTPAY.Installer (M), Threat.Win.Reputation.IMP, PUP.Rostpay (M), PUP.MediaFrog (M), Adware.Bundler (M)
95.56%

Dr.Web
Program.Unwanted.328, Program.Unwanted.303, Win32.Sector.30, Trojan.Potao.6
13.33%

avast!
Win32:PUP-gen [PUP], Win32:Agent-AYCR [PUP], Win32:SaliCode
11.11%

McAfee
Artemis!13ACFA2B3E82, Virus.W32/Sality.gen.z
4.44%

Microsoft Security Essentials
Threat.Undefined
4.44%

Emsisoft Anti-Malware
Win32.Sality, Gen:Variant.Razy.49956
4.44%

ESET NOD32
Win32/Sality.NBA virus, Win32/Blueh.A virus
4.44%

Norman
Win32.Sality.3, Trojan.Generic.8102428
4.44%

Kaspersky
Virus.Win32.Sality, Trojan.Win32.Blueh
4.44%

Trend Micro House Call
Suspicious_GEN.F47V0319
2.22%

Malwarebytes
PUP.Optional.APNToolBar.A
2.22%

Rising Antivirus
PE:Trojan.Win32.Boaxxe.g!1075357690
2.22%

ESET NOD32
Win32/Bundled.Toolbar.Ask.D potentially unsafe (variant)
2.22%

K7 AntiVirus
Riskware
2.22%

VIPRE Antivirus
Threat.4758034
2.22%

The domain www.carambis.com has been seen to resolve to the following 2 IP addresses.

August 27, 2015

server6.freeteam.org
January 12, 2014

File downloads found at URLs served by www.carambis.com.

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

0 / 68

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://www.carambis.com/lp/.../driver_updater.html  (driverupdatersetupa-2.3.1.4215+1x4109s6a9794.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)
http://www.carambis.com/programs/.../download.html  (installersupro-2.3.0.5412.exe)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

4 / 68      (PUP)

1 / 68      (Malware)

1 / 68      (PUP)

1 / 68      (PUP)

 
Latest 30 of 128 download URLs

The following 111 files have been seen to comunicate with www.carambis.com in live environments.

 
Latest 20 of 111 files

URL:
http://www.carambis.com/

Google Analytics:
UA-753548

Title:
“Carambis software - all that you need!”

SSL certificate subject:
CN=carambis.com

SSL certificate issuer:
CN=WoSign CA Free SSL Certificate G2, O=WoSign CA Limited, C=CN

Web server:
nginx

Facebook:
Likes:  134
Shares:  16
Comments:  9

Statistics are for the previous month.