Home Malware Programs Adware Caramava

Caramava

Posted: March 10, 2014

Threat Metric

Threat Level: 2/10
Infected PCs: 1,194
First Seen: March 10, 2014
Last Seen: September 15, 2024
OS(es) Affected: Windows


Caramava is adware, which may embed an add-on, plug-in or browser extension on the Web browser of the computer system. Caramava may show disturbing pop-up advertisements and banners on a variety of shopping-related websites and social networking websites. Caramava may attack Mozilla Firefox, Google Chrome, and Internet Explorer Web browsers. Caramava may be able to alter the default browser settings to possibly run its undesired functions on the PC. Whenever the PC user surfs shopping-related websites and other websites, Caramava may display a pop-up box, which may contain browser sales, offers, pop-up advertisements, messages deals and discount coupons. Search results in any legitimate search provider may be filled with a variety of affiliated web-links taking computer users to unsafe websites that may be commercial. Caramava may collect information such as the PC user's surfing routine and search phrases and then, transmit and use this details for the aim of displaying targeted messages, ads and banners.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\Caramava\bin\utilCaramava.exe File name: utilCaramava.exe
Size: 316.7 KB (316704 bytes)
MD5: b86d98076114bbd7677c66e33d653a56
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava\bin
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\bin\FilterApp_C64.exe File name: FilterApp_C64.exe
Size: 287 KB (287008 bytes)
MD5: 3bb685ac92d05c12f4f0565aad420dc4
Detection count: 73
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava\bin
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\updateCaramava.exe File name: updateCaramava.exe
Size: 317.72 KB (317728 bytes)
MD5: 1662cf7c7ee962ad61cf4f1501955aa5
Detection count: 58
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\bin\Caramava.PurBrowse64.exe File name: Caramava.PurBrowse64.exe
Size: 287 KB (287008 bytes)
MD5: e3bad32d3dad53c0f8d8273d26c6bab1
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava\bin
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES%\Caramava\Caramava.FirstRun.exe File name: Caramava.FirstRun.exe
Size: 1.12 MB (1122592 bytes)
MD5: ed400642566729aca1f75885188c17d3
Detection count: 32
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Caramava
Group: Malware file
Last Updated: June 30, 2014

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{090F5C54-13C9-4871-86D8-4D4D5AE6EAD5}{3768D7DC-C4F0-41E9-89C0-4A10283C792E}HKEY..\..\..\..{RegistryKeys}SOFTWARE\CaramavaSoftware\Microsoft\Internet Explorer\Approved Extensions\{1E50BBDA-C15A-47D5-9853-D829FF890664}SOFTWARE\Microsoft\Tracing\Caramava_RASAPI32SOFTWARE\Microsoft\Tracing\Caramava_RASMANCSSOFTWARE\Microsoft\Tracing\updateCaramava_RASAPI32SOFTWARE\Microsoft\Tracing\updateCaramava_RASMANCSSoftware\Microsoft\Windows\CurrentVersion\Ext\Settings\{1E50BBDA-C15A-47D5-9853-D829FF890664}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1E50BBDA-C15A-47D5-9853-D829FF890664}SOFTWARE\Wow6432Node\CaramavaSOFTWARE\Wow6432Node\Microsoft\Tracing\Caramava_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\Caramava_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updateCaramava_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateCaramava_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{1E50BBDA-C15A-47D5-9853-D829FF890664}SYSTEM\ControlSet001\services\eventlog\Application\Update CaramavaSYSTEM\ControlSet001\services\eventlog\Application\Util CaramavaSYSTEM\ControlSet002\services\eventlog\Application\Util CaramavaSYSTEM\CurrentControlSet\services\eventlog\Application\Update CaramavaSYSTEM\CurrentControlSet\services\eventlog\Application\Util CaramavaHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Caramava

Additional Information

The following directories were created:
%PROGRAMFILES%\Caramava%PROGRAMFILES(x86)%\Caramava%temp%\Caramava
The following URL's were detected:
Caramava
Loading...