SpringFile Could Be The Most Malicious Piece Of Malware Installing Software In History

PEB

Sunflower in support of Ukraine
Platinum Member
Joined
Jan 20, 2004
Messages
32,656
Reaction score
23,748
Just a heads up Sherdoggers do not at all costs install SpringFile. Just worked on a computer that was nearly completely unworkable.100's of piles of Malware installed.

In my years of working on these problems with lockouts and freeze ups this one is insane. Infects the root and pretty much turns all your browsers into rotting corpses.

There had to have been at least a 100 megabytes of crap installed. Malwarebytes could not install and there was tons of problems.
 
Thanks for the heads up, brah.

Liked
 
Downloading it right now.

200w.gif
 
Here the trick making progress was able to install malwarebytes. Malwarebytes makes an anti root toolkit find that but first you will be greeted with a message run.vbs cannot load. That is the first nightmare go and hit control-alt-delete and get task manager.

At Task manager select file then drop down to new task to run and type Explorer. This will allow you access to your desktop. Then if you have Firefox because chrome was completely unworkable go and Google anti-root toolkit malwarebytes.

Its a small program that is made to help you get the computer running enough to load malwarebytes.

You have to restart your computer 5 or 6 times to get to the point where malwarebytes can load. Once you loaded malwarebytes expect a few hours of it blocking out things. This is due to the fact that malwarebytes still has problems running from the desktop.
 
Just a heads up Sherdoggers do not at all costs install SpringFile. Just worked on a computer that was nearly completely unworkable.100's of piles of Malware installed.

In my years of working on these problems with lockouts and freeze ups this one is insane. Infects the root and pretty much turns all your browsers into rotting corpses.

There had to have been at least a 100 megabytes of crap installed. Malwarebytes could not install and there was tons of problems.
Thanks for the head's up. BTW, you just gave me a topic to research for my next cybersecurity paper. Double win!
 
Thanks for the tip.

Off topic, I keep getting an error message on Mozilla telling me the plug-in is unresponsive and to cancel or keep running- something of the
like.

Is that a virus, or does my computer just suck?
 
Seriously, what is spring file supposed to do
 
downloaded springfile.exe, just fuck my shit up fam

NagARUwsQdmpnwiVHiw9_Trash%20My%20Computer.gif
 
Seriously, what is spring file supposed to do
It's used like a torrent for speed downloads of movie and books apparently. Like pirate bay sites or something similar.
 
Malwarebytes Anti-Rootkit, Norton Power Eraser and, Kaspersky's TDSSKIller are good programs if you cannot install or run your antiviral program. All three are rootkit scanners and do not need to be installed in order to run. They are very effective at getting rid of even the most persistent rootkits out there thus giving you some control back to continue your normal course of malware removal.

Also if you cannot run an antivirus due to the fact that said infection broke or disable your antivirus that you have on the machine,. First try booting into safe mode and seeing if the AV runs, if it does good if not you will probably have to move to a bootable AV rescue disc. These disc are made by AV manufacturers in the advent that your computer becomes unstable due to viral activity and or your AV of choice will not run.

All three of these are some of the best rescue discs out there. Will allow you to boot right into their own rescue environment to get your computer back to a pre-viral state or to a state where you are able to boot into Windows and let your regular full version AV do the cleanup
Avast! Rescue Disk
BitDefender Rescue CD
Kaspersky Rescue Disk

Seriously, what is spring file supposed to do
Springfiles is a download manager that is an add-on for browsers that can effectively cripple them and the system that it installs itself on.
 
Last edited:
Thanks for the tip.

Off topic, I keep getting an error message on Mozilla telling me the plug-in is unresponsive and to cancel or keep running- something of the
like.

Is that a virus, or does my computer just suck?
Sounds like its potentially a problem with your mozilla install or something like Malware is hogging resources.

Have a virus scanner run it if you don't there are tons of free options like AVG the one I use the most. Malwarebytes hands down the best free Malware removal tool out there plain and simple most cases that I know there are others.
 
Sounds like its potentially a problem with your mozilla install or something like Malware is hogging resources.

Have a virus scanner run it if you don't there are tons of free options like AVG the one I use the most. Malwarebytes hands down the best free Malware removal tool out there plain and simple.

Thanks! I have Avira and run it semi often. I used to use AVG on my old laptop.

I use the free versions.

Are the ones you pay for better?
 
Just a heads up Sherdoggers do not at all costs install SpringFile. Just worked on a computer that was nearly completely unworkable.100's of piles of Malware installed.

In my years of working on these problems with lockouts and freeze ups this one is insane. Infects the root and pretty much turns all your browsers into rotting corpses.

There had to have been at least a 100 megabytes of crap installed. Malwarebytes could not install and there was tons of problems.


Did you have to offline scan it with Kaperkski or one of them type scanners?
 
Thanks! I have Avira and run it semi often. I used to use AVG on my old laptop.

I use the free versions.

Are the ones you pay for better?
In most cases the free ones are plenty good enough. If you want port blocking through firewall setup an a few other features then the pay option is good.
 
Did you have to offline scan it with Kaperkski or one of them type scanners?
No but during the cleanup malwarebytes took me offline then ask for a reboot.
 
No but during the cleanup malwarebytes took me offline then ask for a reboot.
I've have noticed that certain malware once removed breaks the internet. I don't see it much anymore but for a good few months last year I kept seeing clients come in with the DNS unlocker malware that when removed by our malware removal tools would end up breaking access to the internet, had to do some rather annoying fixes including editing the host file in windows among other things.

One of the worst things though that I have ever come across wasn't even virus related but involved Zone Alarm in that when removing the application from the computer it would leave remnants of it, remnants which would end up cutting off access to the internet.
 
In most cases the free ones are plenty good enough. If you want port blocking through firewall setup an a few other features then the pay option is good.

Thanks again!
 
I've have noticed that certain malware once removed breaks the internet. I don't see it much anymore but for a good few months last year I kept seeing clients come in with the DNS unlocker malware that when removed by our malware removal tools would end up breaking access to the internet, had to do some rather annoying fixes including editing the host file in windows among other things.

One of the worst things though that I have ever come across wasn't even virus related but involved Zone Alarm in that when removing the application from the computer it would leave remnants of it, remnants which would end up cutting off access to the internet.
Thanks for the info about Zone Alarm I have heard of it never used it though.
 
No but during the cleanup malwarebytes took me offline then ask for a reboot.


Interesting.

have had good luck with this one when the OS is unusable during disinfection:

http://support.kaspersky.com/us/viruses/rescuedisk

Sometimes it must be run in Text mode to work, and sometimes it will try and hose false hits, but it always asks first.

Worst infection I saw was one infected with the Crypto Ransomware. Everything was encrypted and completely hosed.

Got the crypto off but had to restore all the files from backup.
 
Back
Top