Home Malware Programs Adware Caramava

Caramava

Posted: March 10, 2014

Threat Metric

Ranking: 17,028
Threat Level: 2/10
Infected PCs: 1,192
First Seen: March 10, 2014
Last Seen: July 24, 2023
OS(es) Affected: Windows


Caramava is adware, which may embed an add-on, plug-in or browser extension on the Web browser of the computer system. Caramava may show disturbing pop-up advertisements and banners on a variety of shopping-related websites and social networking websites. Caramava may attack Mozilla Firefox, Google Chrome, and Internet Explorer Web browsers. Caramava may be able to alter the default browser settings to possibly run its undesired functions on the PC. Whenever the PC user surfs shopping-related websites and other websites, Caramava may display a pop-up box, which may contain browser sales, offers, pop-up advertisements, messages deals and discount coupons. Search results in any legitimate search provider may be filled with a variety of affiliated web-links taking computer users to unsafe websites that may be commercial. Caramava may collect information such as the PC user's surfing routine and search phrases and then, transmit and use this details for the aim of displaying targeted messages, ads and banners.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\Caramava\bin\FilterApp_C64.exe File name: FilterApp_C64.exe
Size: 287 KB (287008 bytes)
MD5: 282db85674d2c94af7b319175a7bc77e
Detection count: 152
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava\bin
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\bin\FilterApp_C64.exe File name: FilterApp_C64.exe
Size: 287 KB (287008 bytes)
MD5: ceabda40f6e96c18666bb04867c42978
Detection count: 98
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava\bin
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\Caramava.FirstRun.exe File name: Caramava.FirstRun.exe
Size: 1.12 MB (1122592 bytes)
MD5: f2afd5039897b0b0c1807f646f5151e7
Detection count: 91
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\Caramava.FirstRun.exe File name: Caramava.FirstRun.exe
Size: 1.12 MB (1122080 bytes)
MD5: 30f850fe1f0a4ae061b41da853805932
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\bin\utilCaramava.exe File name: utilCaramava.exe
Size: 316.7 KB (316704 bytes)
MD5: b86d98076114bbd7677c66e33d653a56
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava\bin
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\bin\Caramava.PurBrowse64.exe File name: Caramava.PurBrowse64.exe
Size: 287 KB (287008 bytes)
MD5: 94f8aa1497101f4e1a3425a839b9a600
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava\bin
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\bin\Caramava.PurBrowse64.exe File name: Caramava.PurBrowse64.exe
Size: 287 KB (287008 bytes)
MD5: e3bad32d3dad53c0f8d8273d26c6bab1
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava\bin
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES%\Caramava\Caramava.FirstRun.exe File name: Caramava.FirstRun.exe
Size: 1.12 MB (1122592 bytes)
MD5: ed400642566729aca1f75885188c17d3
Detection count: 32
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Caramava
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES%\Caramava\Caramava.FirstRun.exe File name: Caramava.FirstRun.exe
Size: 1.75 MB (1756448 bytes)
MD5: 3af95d137a195c96af4ef592387b94ec
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Caramava
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\bin\FilterApp_C64.exe File name: FilterApp_C64.exe
Size: 287 KB (287008 bytes)
MD5: 7a97bf707580067e2fc844798fb8e708
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava\bin
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\bin\FilterApp_C64.exe File name: FilterApp_C64.exe
Size: 287 KB (287008 bytes)
MD5: bedbee1b3e1b02d3d51499980cb61f06
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava\bin
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\bin\FilterApp_C64.exe File name: FilterApp_C64.exe
Size: 287 KB (287008 bytes)
MD5: 1e7c4751660d85f3753bba2cf4018435
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava\bin
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES(x86)%\Caramava\Caramava.FirstRun.exe File name: Caramava.FirstRun.exe
Size: 1.75 MB (1756960 bytes)
MD5: 245a9ca3ae682c91d9fb6143511800cb
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Caramava
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES%\Caramava\Caramava.FirstRun.exe File name: Caramava.FirstRun.exe
Size: 1.76 MB (1765152 bytes)
MD5: e517a91f87cb57d79fba00bdba313e91
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Caramava
Group: Malware file
Last Updated: June 30, 2014
%PROGRAMFILES%\Caramava\updateCaramava.exe File name: updateCaramava.exe
Size: 348.96 KB (348960 bytes)
MD5: ab07e012098550611d72165087843929
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Caramava
Group: Malware file
Last Updated: June 30, 2014

Registry Modifications

The following newly produced Registry Values are:

CLSID{090F5C54-13C9-4871-86D8-4D4D5AE6EAD5}{3768D7DC-C4F0-41E9-89C0-4A10283C792E}HKEY..\..\..\..{RegistryKeys}SOFTWARE\CaramavaSoftware\Microsoft\Internet Explorer\Approved Extensions\{1E50BBDA-C15A-47D5-9853-D829FF890664}SOFTWARE\Microsoft\Tracing\Caramava_RASAPI32SOFTWARE\Microsoft\Tracing\Caramava_RASMANCSSOFTWARE\Microsoft\Tracing\updateCaramava_RASAPI32SOFTWARE\Microsoft\Tracing\updateCaramava_RASMANCSSoftware\Microsoft\Windows\CurrentVersion\Ext\Settings\{1E50BBDA-C15A-47D5-9853-D829FF890664}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1E50BBDA-C15A-47D5-9853-D829FF890664}SOFTWARE\Wow6432Node\CaramavaSOFTWARE\Wow6432Node\Microsoft\Tracing\Caramava_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\Caramava_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updateCaramava_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateCaramava_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{1E50BBDA-C15A-47D5-9853-D829FF890664}SYSTEM\ControlSet001\services\eventlog\Application\Update CaramavaSYSTEM\ControlSet001\services\eventlog\Application\Util CaramavaSYSTEM\ControlSet002\services\eventlog\Application\Util CaramavaSYSTEM\CurrentControlSet\services\eventlog\Application\Update CaramavaSYSTEM\CurrentControlSet\services\eventlog\Application\Util CaramavaHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Caramava

Additional Information

The following directories were created:
%PROGRAMFILES%\Caramava%PROGRAMFILES(x86)%\Caramava%temp%\Caramava
The following URL's were detected:
Caramava
Loading...