Instafinder

Description: Adware
Risk Level: High
Date of First Occurence: Monday, April 21, 2008
Software Developer: Vistainteractivemedia.com
Brief Info: InstaFinder is a Browser Helper Object that redirects searches for non-existant sites to a pre-determined Web site. It can also display advertisements and can download and execute other adware programs.
Removal: This threat can be removed using "Spyware Terminator"

SUPPRIMER SPYWARE »

Geographical Distribution of Threat "Instafinder"

Threat Info

View All

Detected Items

  1. Detected Files: %PROGRAMFILES%\Instafin\Uninstall.exe MD5: 0049FE771D27917177B89A9BFD41284B Size:34530 MD5: 3CC5D64EC6D80CE0794B2C3A8B4B5803 Size:34527 %PROGRAMFILES%\INSTAFINK\instafink.dll MD5: 6494A3F3B59AFBB9838CE3464C5D5399 Size:552960 %WINDIR%\temp\Adware\instafinderk_inst.exe MD5: 140C508D65A978393A29767CC3A8961E Size:273053 MD5: 6169EB4A01C173E12E276E295903B9AB Size:8704 MD5: F43B10D1CEDF9FF3072DA300CF0FF79B Size:29184 %PROGRAMFILES%\Instafink\Uninstall.exe MD5: 99935CE242455AC9127FE41A300381A3 Size:33421 MD5: 51BE209E0D90FA37AB1B38DEA3B42054 Size:32379 MD5: AE8C55AD1936D508969404FA2A1FBCA7 Size:32371 %DOWNLOADEDPROGRAMFILES%\instafin.dll MD5: E8A2F11E020EB45FDB97E9E9F2F0EA76 Size:227840
  2. Detected Files with variable Filenames: MD5: 108FCCB4186903B1FAB79ACFE9A4B7AC Size: 46097 %WINDIR%\temp\Adware\instafinderk_inst.exe %PROGRAMFILES%\Instafink\InstaFinderK_inst.exe MD5: B8CAF43880A5B74C6FDE17027CC9DB9E Size: 547328 %DOWNLOADEDPROGRAMFILES%\instafin.dll %WINDIR%\Downloaded Program Files\instafin.dll

Detecting items list:

  1. Files by Name %PROGRAMFILES%\Instafink\instafink.dll %PROGRAMFILES%\Instafink\uninstall.exe %PROGRAMFILES%\Instafin\instafink.dll %DOWNLOADEDPROGRAMFILES%\instafin.dll %PROGRAMFILES%\Instafink\instafinderk_inst.exe %Windir%\temp\Adware\instafinderk_inst.exe
  2. Files by Directories %PROGRAMFILES%\Instafink %PROGRAMFILES%\Instafin
  3. Files by CLSID or Name CLSID=4E7BD74F-2B8D-469E-DCF7-F96DA086B434 CLSID=4E7BD74F-2B8D-469E-90F0-F66AB581A933
  4. Registry Keys HKCU\SOFTWARE\instafink HKCU\SOFTWARE\instafin HKCR\instafink.INSTAFINK HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\INSTAFINK
  5. Registry Values HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ValueName=InstaFinderK

« Go to Software Database