Home Malware Programs Browser Hijackers Flipora Hijacker

Flipora Hijacker

Posted: February 7, 2013

Threat Metric

Ranking: 2,316
Threat Level: 5/10
Infected PCs: 16,561
First Seen: February 7, 2013
Last Seen: October 17, 2023
OS(es) Affected: Windows

Flipora Hijacker is a software program that results in unwanted redirects to a website called 'static.flipora.com' and numerous other problems to the infected computer. Flipora Hijacker gains access to the vulnerable computer over spam email attachments and by bundling into other software programs that are usually free and able to download form the Internet. Once installed, Flipora Hijacker takes over the targeted Internet browser and gains access and control over the compromised PC. Flipora Hijacker alters some browser settings and changes the default search page and homepage to static.flipora.com, and even ads unidentified websites to the bookmarks list. When PC users attempt to perform online searches on the web they will get diverted to static.flipora.com instead of their requests. Redirects to static.flipora.com are very annoying and they may also cause penetration of malware infections if victims get diverted to malicious websites or click on malicious links. Flipora Hijacker attempts to gather personal information, such as the victim's browsing history in order to use it to advertise a variety of products or perform similar actions. When installed, Flipora Hijacker adds extensions and malicious files on the corrupted machine.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



Flipora_accept_friend_v25.exe File name: Flipora_accept_friend_v25.exe
Size: 476.43 KB (476432 bytes)
MD5: b90b661125e985dce68cf53495bd370a
Detection count: 53
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: August 17, 2022

Registry Modifications

The following newly produced Registry Values are:

CLSID{04328774-312E-47B7-8EE4-19BADF85C935}{4DA729A4-684A-4034-A45B-6D56CEAAE92B}{63E60077-EDE9-427a-BAD0-2ED15FADA0A8}{9958A1D6-B3E7-4602-AFB1-B9CC88D3B586}HKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\InfoaxeSOFTWARE\Classes\Infoaxe.BHOSOFTWARE\Classes\Infoaxe.BHO.1SOFTWARE\Classes\Infoaxe.SidebarSOFTWARE\Classes\Infoaxe.Sidebar.1SOFTWARE\Classes\Infoaxe.ToolbarSOFTWARE\Classes\Infoaxe.Toolbar.1Software\InfoaxeSoftware\infoaxe\infoaxeToolbarSoftware\Microsoft\Internet Explorer\Approved Extensions\{63E60077-EDE9-427A-BAD0-2ED15FADA0A8}Software\Microsoft\Internet Explorer\Approved Extensions\{9958A1D6-B3E7-4602-AFB1-B9CC88D3B586}Software\Microsoft\Internet Explorer\DOMStorage\flipora.comSoftware\Microsoft\Internet Explorer\DOMStorage\static.flipora.comSoftware\Microsoft\Internet Explorer\SearchScopes\infoaxe_googleSoftware\Microsoft\Internet Explorer\URLSearchHooks\{4DA729A4-684A-4034-A45B-6D56CEAAE92B}Software\Microsoft\Internet Explorer\URLSearchHooks\{717EDDE0-444F-4ff0-B9C9-F60EC423E690}SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{63E60077-EDE9-427a-BAD0-2ED15FADA0A8}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{63E60077-EDE9-427A-BAD0-2ED15FADA0A8}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{63E60077-EDE9-427A-BAD0-2ED15FADA0A8}Software\Microsoft\Windows\CurrentVersion\Run\Search SettingsSOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FliporaSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{63E60077-EDE9-427a-BAD0-2ED15FADA0A8}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Discovery ToolsSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\FliporaHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Search Settings

Additional Information

The following directories were created:
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Discovery Tools%APPDATA%\Microsoft\Windows\Start Menu\Programs\Flipora - Discover the Web with Friends%APPDATA%\Microsoft\Windows\Start Menu\Programs\Flipora - Mood-aware Website Recommendations%APPDATA%\Microsoft\Windows\Start Menu\Programs\Search Settings%PROGRAMFILES%\Discovery Tools%PROGRAMFILES%\Flipora%PROGRAMFILES%\SearchSettings%PROGRAMFILES(x86)%\Discovery Tools%PROGRAMFILES(x86)%\Flipora%PROGRAMFILES(x86)%\SearchSettings%USERPROFILE%\AppData\LocalLow\flipora%USERPROFILE%\Application Data\flipora
Loading...