Spigot

Posted: December 23, 2023
from Cybersecurity Glossary
Aliases:
Adware.Spigot, MacOS:Spigot
Category:
Platform:
Windows , MacOS
Variants:
MACOS:Spigot-AY and multiple others (usually named adware/osx.spigot.[variant] or Adware.Spigot.[variant])
Damage:
Browser Interference (Including Redirects), Changing The User’s Home Or New Tab Pages, Ads Injected Into Web Pages, Frequent Pop-Ups, Theft Of Sensitive Information, Installation Of Undesirable Software, Malware Infection.
Risk Level:
Middle

Spigot, a form of adware, is frequently included in files downloaded from disreputable or compromised websites. Upon execution of the downloaded file, Spigot covertly installs unwanted browser extensions or additional software, resulting in the presentation of intrusive advertisements on your device. This process also poses a potential threat to your data security. Advertisements facilitated by Spigot can direct you to web pages housing scams or further malware.

Possible symptoms

  • Unexpected changes in browser settings, such as homepage or new tab page alterations.
  • Frequent and intrusive pop-up advertisements while browsing.
  • Browser redirections to suspicious or unwanted websites.
  • Ads injected into web pages that are not part of the original content.
  • Sluggish browser performance and increased system resource usage.
  • The presence of unfamiliar browser extensions or plugins.
  • Potential compromise of sensitive information due to tracking activities.

Sources of the infection

  • Downloads from disreputable or compromised websites, especially those offering freeware or shareware applications.
  • Bundled with seemingly legitimate software installations, where users may unknowingly accept additional components during the setup process.
  • Malicious advertisements (malvertising) on compromised websites that prompt users to download or install software containing Spigot.
  • Exploitation of software vulnerabilities, particularly outdated browser versions or plugins, through drive-by downloads.
  • Pirated or unofficial software repositories that may host compromised versions of popular applications.
  • Infected email attachments or links leading to the download of files containing Spigot.

Overview

Spigot, also known as Adware.Spigot or MacOS:Spigot, is a type of adware that poses a threat to user privacy and system security. Typically bundled with files from untrustworthy or compromised websites, Spigot discreetly installs unwanted browser extensions or additional software upon execution of the downloaded file. This leads to the display of intrusive advertisements on the user's device, including browser interference, frequent pop-ups, and changes to browser settings.

The symptoms of a Spigot infection include unexpected alterations to browser settings, intrusive pop-up ads, browser redirections to suspicious websites, injected ads on web pages, sluggish browser performance, the presence of unfamiliar browser extensions, and the potential compromise of sensitive information through tracking activities.

Spigot is not limited to a specific platform and can affect both Windows and MacOS systems. It comes in various variants, such as MACOS:Spigot-AY and others with names like adware/osx.spigot.[variant] or Adware.Spigot.[variant].

Sources of Spigot infections include downloads from compromised websites, bundled installations with seemingly legitimate software, malvertising on compromised websites, exploitation of software vulnerabilities through drive-by downloads, pirated software repositories, and infected email attachments or links.

To mitigate the risks associated with Spigot, users are advised to take immediate action if an infection is suspected. This includes using a Gridinsoft Anti-Malware for a full system scan, removing detected instances of Spigot and associated files, resetting affected web browsers to default settings, checking for unauthorized changes to system settings or installed software, and monitoring the system for unusual activities.

Preventive measures against Spigot infections involve keeping the operating system and software up-to-date with the latest security patches, downloading software only from reputable sources, using reliable antivirus or anti-malware solutions with regular updates, exercising caution when clicking on ads or links, and regularly backing up important data to mitigate potential data loss in case of infection.

🤔 What to do?

If you suspect your system is infected with Spigot, it is crucial to take immediate action to mitigate potential risks:

  1. Use a Gridinsoft Anti-Malware to perform a full system scan.
  2. Remove any detected instances of Spigot and associated files.
  3. Reset affected web browsers to default settings to eliminate unwanted extensions.
  4. Check for any unauthorized changes to system settings or installed software.
  5. Monitor your system for any unusual activities or persistent issues.

🛡️ Prevention

To prevent Spigot infections and similar threats, follow these technical measures:

  1. Keep your operating system and all software up-to-date with the latest security patches.
  2. Download software only from reputable sources, avoiding disreputable or compromised websites.
  3. Use a reliable antivirus or anti-malware solution and regularly update its virus definitions.
  4. Be cautious when clicking on ads or links, especially on unfamiliar websites.
  5. Regularly backup your important data to mitigate potential data loss in case of an infection.

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware