Author Topic: spy falcon and zolob trojan downloader  (Read 5870 times)

0 Members and 1 Guest are viewing this topic.

Offline apeman

  • Newbie
  • *
  • Posts: 4
    • View Profile
spy falcon and zolob trojan downloader
« on: March 15, 2006, 01:08:15 PM »
i run windows xp with sp2 and had a virus which i got from trying to install a video codec that i was told i needed.it was trying to install spy falcon onto my system after saying that my system was infected and i needed spy falcon to get rid of it.i took my system to a computer shop and they eradicated the virus for me.the owner told me to install windows defender (beta) which would help with future problems even though i run zonealarm,ad-aware se,avg and spybot.
everytime i run windows defender it brings up a warning about ZOLOB TROJAN DOWNLOADER.i remove it but it constantly comes back.
can anybody give me directions on how to get rid of this once and for all please.

Offline apeman

  • Newbie
  • *
  • Posts: 4
    • View Profile
Re: spy falcon and zolob trojan downloader
« Reply #1 on: March 15, 2006, 02:39:56 PM »
a small add-on to this continueing problem...
windows defender picks jup the problem and i deleted it,ran windows defender again and it was back,deleted it again,ran spybot during start-up and it found vcodec and ps guard as a problem..deleted those....ran avg and it picked up the zolob trojan,deleted that then ran windows defender again but low-and-behold....IT IS STILL THERE!!!!
please can somebody help or direct me in the correct course of action without having to do a reformat if possible

Offline GR@PH;<'S

  • Administrator
  • Hero Member
  • *****
  • Posts: 20125
    • View Profile
    • http://www.taktmobiles.co.uk
Re: spy falcon and zolob trojan downloader
« Reply #2 on: March 15, 2006, 02:54:37 PM »
apeman,
Please can you try at least two if not more of these  On-line scans
Panda
Symantec
McAfee
TrendMicro
Bit Defender
Kaspersky
CommandonDemand
Computer Associates
CyberTechHelp
PC Pitstop
Stinger
a2
or download and try
TrojanHunter (Note Trojan Scanner 30 day Trial)
Then once you have done clear out your cache folder again ie: Run
CCleaner
(Note in CCleaner: go to >options > advanced > Uncheck "Only delete files in Windows Temp folders older than 48 hours"). 
Then  using
Ad-aware SE Build 106 (Free/Personal)
[if not Uninstall your old Ad-aware first then install SE]
Then use the WebUpDate
to get the latest Definition file
(SE1R97.13.03.2006) do a  "Full Scan" and then post your logfile here by using the Add-Reply Feature .
and then can you run windows defender and let us know if it still there .
GR@PH;<'S   :breakkie:
press Enter then have a Brandy then if the problem is still there have another Brandy
Q: does it work
A: It does seem to for a few hours at least.

Offline apeman

  • Newbie
  • *
  • Posts: 4
    • View Profile
Re: spy falcon and zolob trojan downloader
« Reply #3 on: March 17, 2006, 02:12:39 PM »
i apologise for not leaving the log-file from ad-aware se but i had beleted the files before remembering to add it on to this reply.
trojan hunter took care of the trojan,i ran cccleaner and cleaned everything out,ran ad-aware se and deleted everything there.ran trojan hunter again and it never picked up anything but when i ran windows defender the trojan was back.same file,same place.
i ran regedit and found exactly where the file is but after deleting it, it still comes back right away.
i even tried disabling system restore incase it was trapped in the system restore files but that never worked either.
i still have pest-patrol and hijack this to try so i will keep you updated and hopefully it will work

Offline apeman

  • Newbie
  • *
  • Posts: 4
    • View Profile
Re: spy falcon and zolob trojan downloader
« Reply #4 on: March 17, 2006, 02:45:43 PM »
i apologise for not leaving the log-file from ad-aware se but i had beleted the files before remembering to add it on to this reply.
trojan hunter took care of the trojan,i ran cccleaner and cleaned everything out,ran ad-aware se and deleted everything there.ran trojan hunter again and it never picked up anything but when i ran windows defender the trojan was back.same file,same place.
i ran regedit and found exactly where the file is but after deleting it, it still comes back right away.
i even tried disabling system restore incase it was trapped in the system restore files but that never worked either.
i still have pest-patrol and hijack this to try so i will keep you updated and hopefully it will work
i ran pest patrol which caught 3 pests.deleted those then ran windows defender and it came back CLEAN...HAVE I FINALLY GOT RID OF THIS PROBLEM??????hopefully

Offline GR@PH;<'S

  • Administrator
  • Hero Member
  • *****
  • Posts: 20125
    • View Profile
    • http://www.taktmobiles.co.uk
Re: spy falcon and zolob trojan downloader
« Reply #5 on: March 17, 2006, 02:52:30 PM »
apeman,
Quote
I FINALLY GOT RID OF THIS PROBLEM??????hopefully
Lets hope so but if needed you are always welcome here

GR@PH;<'S   :breakkie:
press Enter then have a Brandy then if the problem is still there have another Brandy
Q: does it work
A: It does seem to for a few hours at least.

Offline GR@PH;<'S

  • Administrator
  • Hero Member
  • *****
  • Posts: 20125
    • View Profile
    • http://www.taktmobiles.co.uk
Re: spy falcon and zolob trojan downloader
« Reply #6 on: March 17, 2006, 07:59:16 PM »
apeman,
 download
HijackThis
 After you have downloaded  it and Unzipped it, doubleclick HijackThis.exe, and hit "Scan".
When the scan is finished, the "Scan" button will change into a "Save Log" button.
Press that, save the log somewhere, and then can you please post you Logfile in the
 HijackThis Logs  forum and start a NEW topic, Call the new topic some thing like "my HijackThis log" in the Topic Title
and then put "referred by GR@PH;<'S" as the Topic Description
and link it to "spy falcon and zolob trojan downloader" by putting this 
 http://www.landzdown.com/index.php?topic=6110.0

if you want to use the (tabs) then  i recommend that you go to the Testing pages
and have a play and that way you will geet used to using them.

GR@PH;<'S   :breakkie:
press Enter then have a Brandy then if the problem is still there have another Brandy
Q: does it work
A: It does seem to for a few hours at least.