avast! Home free v 4.8.1129 / Xtreme Toolkit v 1.9.4.0 / Windows XP Home
I use an application called FlexCrypt Folder (http://www.flexcrypt.com/flexcryptfolder.html) which encrypts files into password-protected executables. I have been using this for a while and I have every reason to believe it is legit and clean.
Each time it’s run, Flexcrypt generates variably-named .DAT files, and avast! is flagging these files as containing “Win32: Trojan-gen{Other}” --Flexcrypt cannot be run, nor the resulting executable files opened or accessed, while Standard Shield is running, it must be paused to run Flexcrypt and generate or access the resulting executables.
Since avast! is flagging multiple, individually-generated files, I’m not sure how to submit this to VirusTotal and/or avast! directly for consideration. Any advice appreciated.
You can only upload individual files to VT, so I would suggest you upload a couple and post the link to the results here.
Create a folder called Suspect in the C:\ drive, e.g. C:\Suspect. Now exclude that folder in the Standard Shield, Customize, Advanced, Add, type (or copy and paste) C:\Suspect* That will stop the standard shield scanning any file you put in that folder. You should now be able to export any file in the chest to this folder and upload it to VirusTotal without avast alerting.
If it is indeed a false positive, send a couple of the sample to avast these can be grouped into one password protected archive.
Send the sample to virus@avast.com zipped and password protected with the password in email body, a link to this topic and VT results might help and false positive/undetected malware in the subject.
You’re welcome, lets hope there is a speedy correction.
You could exclude the *.dat files if they are in the one folder e.g. c:\foldername*.dat that * wildcard means all .dat files in the folder would be excluded from scans, so if you chose to do that you would have to exercise care or you could leave a big security hole.
Periodically scan the suspect files in the chest and when they are no lomger detected restore the files and remove the exclusions.