TrojansC.Sbi

Monsoon

New member
I have just done a scan during which an error message flashed up that I should look at 'include errors.log' with regard to TrojansC.Sbi which turns out to give a line of text referring I think to 'Zlob' and what looks like an url. I have tried to e-mail off a question to S&D about this but that part of S&D refuses to identify that I have completed the spam prevention box correctly so I cant report the problem in that way. Does this mean that S&D has found but cant cure Zlob or that there is something more fundamental wrong. I have just taken the 13/6/07 update.
 
Download the following update using the integrated update facility:
  • TCP/IP Settings plugin - !TCP/IP Settings plugin (65 KB) - 2007-06-06
 
Monsoon:

Since this appears to be a relatively new problem and forums such as this are for the sharing of information, your feedback as to whether or not my suggestion worked would be appreciated.
 
It worked great

I had the same problem though I saw the TCP/IP updated but didn't install it not knowing if I needed to. Updating the TCP/IP setting plug in fixed it and I am no longer receiving the error.

Thanks
C
 
is there anyway I can download the "!TCP/IP Settings plugin" without having to use the intergrated download?
 
I got an error page when I had someone click on that link

I tried to click it also and got the same error code:
* Download the following file:
http://www.spybotupdates.biz/updates.../plugtcpip.zip
* Unzip (extract) plugtcpip.zip.
* Move or copy the TCPIPAddress.dll file to:
C:\Program Files\Spybot - Search & Destroy\Plugins

This is the error code we get:
Multiple Choices
The document name you requested (/updates.../plugtcpip.zip) could not be found on this server. However, we found documents with names similar to the one you requested.

Available documents:

* /updates/plugtcpip.zip (common basename)
What do I do to fix this on this persons pc? I am fixing the PC Remotely using Windows Live Messenger Remote Assistance
 
Last edited:
pastorwilliambarhorst:

My link seems to work fine for me (but the one your post doesn't).

Are you clicking the link in my post or a copy of the link you made?
 
The TCP/IP Settings plugin has been added to the Downloads Web pages as the following item:
  • TCP/IP Plugin 1.0 - product description - product description
    md5: 7FD95B7E814EA2F56AEACE3613B4A0E9

    This adds capabilities to find and replace malicious network settings. Only needed if you do not want to use the update function integrated into Spybot-S&D.
 
The TCP/IP Settings plugin has been added to the Downloads Web pages as the following item:
  • TCP/IP Plugin 1.0 - product description - product description
    md5: 7FD95B7E814EA2F56AEACE3613B4A0E9

    This adds capabilities to find and replace malicious network settings. Only needed if you do not want to use the update function integrated into Spybot-S&D.

Still not sure why the two are linked? Why is it necessary to install the TCP/IP Plugin to be able top apply the latest Trojans update file and not have an error? I'm glad that this will fix my error (was getting the same one), but don't understand the dependency. None of the other updates seemed to have a linkage to this one?

Jay S.
 
Jay_S:

From the following pinned (Sticky) thread:

hi,

some malware (for instance Zlob.DNSChanger) are able to change the computer's TCP/IP settings. In case of Zlob.DNSChanger bad DNS Servers are entered.
The TCP/IP settings plugin enables Spybot to use new rules which can detect IP addresses entered by malware and exchange them with non harmful entries.

Further plugins will enable Spybot to increase its set of rules and rule parameters without the need for a new main update. Thus the plugins make Spybot more flexible.
 
Jay_S:

From the following pinned (Sticky) thread:

Thanks, but I'm still not sure why they're connected. From an earlier post of yours..

"This adds capabilities to find and replace malicious network settings. Only needed if you do not want to use the update function integrated into Spybot-S&D."

If it is only needed if you don't want to use the update function, why does the Trojans update have this error if you do use the update function? Also, shouldn't there be something on the TCP/IP plugin that indicates it is a required update if you want to run through the Trojans update cleanly?

Jay S.
 
Last edited:
Jay_S:

Thanks, but I'm still not sure why they're connected. From an earlier post of yours..

"This adds capabilities to find and replace malicious network settings. Only needed if you do not want to use the update function integrated into Spybot-S&D."

If it is only needed if you don't want to use the update function, why does the Trojans update have this error if you do use the update function?
You need the TCP/IP plugin with the new rule set included in beta updates on 2007-06-06 and regular updates on 2007-06-13 or else you will get an error.


The TCP/IP settings plugin enables Spybot to use new rules which can detect IP addresses entered by malware and exchange them with non harmful entries. …
To download and install the TCP/IP plugin you either have to:
  • Download the following update using the integrated update facility:
    • TCP/IP Settings plugin - !TCP/IP Settings plugin (65 KB) - 2007-06-06

    --- or (if you do not use the integrated update facility) ---

  • Download and execute the following item from the Downloads Web page:
    • TCP/IP Plugin 1.0 - product description - product description
      md5: 7FD95B7E814EA2F56AEACE3613B4A0E9

      This adds capabilities to find and replace malicious network settings. Only needed if you do not want to use the update function integrated into Spybot-S&D.
Also, shouldn't there be something on the TCP/IP plugin that indicates it is a required update if you want to run through the Trojans update cleanly?
Possibly, but I don't any control over that. I imagine that it is assumed that you download all the updates listed and not pick and choose among them. How do you suggest that be accomplished? Change the update from:
  • TCP/IP Settings plugin - !TCP/IP Settings plugin (65 KB) - 2007-06-06
To:
  • TCP/IP Settings plugin - !TCP/IP Settings plugin (65 KB) (Required update if you want to run through the Trojans update cleanly) - 2007-06-06
 
Jay_S:


You need the TCP/IP plugin with the new rule set included in beta updates on 2007-06-06 and regular updates on 2007-06-13 or else you will get an error.


To download and install the TCP/IP plugin you either have to:
  • Download the following update using the integrated update facility:
    • TCP/IP Settings plugin - !TCP/IP Settings plugin (65 KB) - 2007-06-06

    --- or (if you do not use the integrated update facility) ---

  • Download and execute the following item from the Downloads Web page:
    • TCP/IP Plugin 1.0 - product description - product description
      md5: 7FD95B7E814EA2F56AEACE3613B4A0E9

      This adds capabilities to find and replace malicious network settings. Only needed if you do not want to use the update function integrated into Spybot-S&D.

Possibly, but I don't any control over that. I imagine that it is assumed that you download all the updates listed and not pick and choose among them. How do you suggest that be accomplished? Change the update from:
  • TCP/IP Settings plugin - !TCP/IP Settings plugin (65 KB) - 2007-06-06
To:
  • TCP/IP Settings plugin - !TCP/IP Settings plugin (65 KB) (Required update if you want to run through the Trojans update cleanly) - 2007-06-06

I suppose (to your last point) something like that would be helpful. I'm not the only one that didn't download the TCP/IP update initially. Since they are selectable, this was a situation where one option required another.

Jay S.
 
Also, shouldn't there be something on the TCP/IP plugin that indicates it is a required update if you want to run through the Trojans update cleanly?

How do you suggest that be accomplished? Change the update from:
  • TCP/IP Settings plugin - !TCP/IP Settings plugin (65 KB) - 2007-06-06
To:
  • TCP/IP Settings plugin - !TCP/IP Settings plugin (65 KB) (Required update if you want to run through the Trojans update cleanly) - 2007-06-06

I suppose (to your last point) something like that would be helpful.
Then suggest it, because I certainly won't.
 
This is just another situation that points up that there are two major types of users, the type that care what each update file does and those who just want it to work. Unfortunately, both types tend to make bad decisions in cases such as this as has been clearly displayed here.

When this update released, I simply installed it because I knew that Team Spybot didn't release it for no reason and it had some purpose, so I never had this problem. However, when everyone started asking about it, I used FileAlyzer to investigate the TCP/IP Settings plugin and quickly understood what it did, though I thought the name itself made that fairly clear in the first place.

Whether you use a specific portion of the program or not, you should always download all updates, since there are often dependancies and you can always disable any optional components separately anyway. This is important in case you ever choose later to enable one of these other modules such as TeaTimer, since it might be out of date otherwise.

Personally, I believe it's time to admit that most users of Spybot S&D are no longer knowledgeable programmers and simply hide the update 'list' and automatically download them all. Only the language specific optional updates should be listed, by language title only, with all required files updated for each language selected. This is the simplest way to keep everyone from making useless mistakes that simply cause issues for themselves and add to the support burden.

Bitman
 
Help Please

Download the following update using the integrated update facility:
  • TCP/IP Settings plugin - !TCP/IP Settings plugin (65 KB) - 2007-06-06

Sorry, but I am old and not tech savvy. I have this same problem, how do I implement the above fix?

Please, if you respond, I will need simple step by step insructions!

Many thanks.
 
Back
Top