I don’t mean to be a pest but how do I move the file into a temporary folder? Unless you are talking about the “restore” option?
I’m hoping that superantispyware has an other option other than just restore.
I haven’t got superantispyware any longer (only tired it for a very short time before I uninstalled it) so I wasn’t speaking from experience. You need to move it out of quarantine to be able to upload it (if the quarantine is worth while), now the avast chest has two option Restore and Extract, this allows you to save it to a different location than the original.
This is preferable (if the option exists in superantispyware) as in the original location it could possibly be activated again (not what you want) if not use Restore and then immediately drag it to a temporary folder ‘you choose’ this stops any possible registry entry pointing at the file in its original location doesn’t find anything there.
You may need to disable superantispyware as it may detect it again when you do this moving around.
Ah, I understand now. Thank you!!! ;D
Your welcome, let us know how you get on.
Well, I can’t send that one file that is in superantispyware’s quarantine chest because it only has a remove and restore option. So, I thought I might try some of the stuff in Avast’s chest. I tried two things in there but all I kept on recieving from virustotal.com when I submitted them was this message “0 bytes size received / Se ha recibido un archivo vacio”. I don’t know why, any ideas?
Oh, I e-mailed one of those “0 bytes size received / Se ha recibido un archivo vacio” files to virustotal.com and here is the response I got after it was scanned:
[b]Complete scanning result of “BTGrab.dll”, processed in VirusTotal at 02/28/2007 03:32:34 (CET).
[ file data ]
- name: BTGrab.dll
- size: 0
- md5.: d41d8cd98f00b204e9800998ecf8427e
- sha1: da39a3ee5e6b4b0d3255bfef95601890afd80709
[ scan result ]
AntiVir 7.3.1.38/20070227 found nothing
Authentium 4.93.8/20070227 found nothing
Avast 4.7.936.0/20070227 found nothing
AVG 7.5.0.441/20070227 found nothing
BitDefender 7.2/20070228 found nothing
CAT-QuickHeal 9.00/20070227 found nothing
ClamAV devel-20060426/20070228 found nothing
DrWeb 4.33/20070227 found nothing
eSafe 7.0.14.0/20070227 found nothing
eTrust-Vet 30.4.3440/20070228 found nothing
Ewido 4.0/20070227 found nothing
F-Prot 4.3.1.45/20070228 found nothing
F-Secure 6.70.13030.0/20070228 found nothing
FileAdvisor 1/20070228 found [No threat detected]
Fortinet 2.85.0.0/20070227 found nothing
Ikarus T3.1.1.3/20070227 found nothing
Kaspersky 4.0.2.24/20070228 found nothing
McAfee 4972/20070227 found nothing
Microsoft 1.2204/20070227 found nothing
NOD32v2 2083/20070227 found nothing
Norman 5.80.02/20070227 found nothing
Panda 9.0.0.4/20070227 found nothing
Prevx1 V2/20070228 found nothing
Sophos 4.14.0/20070226 found nothing
Sunbelt 2.2.907.0/20070224 found nothing
Symantec 10/20070228 found nothing
TheHacker 6.1.6.065/20070226 found nothing
UNA 1.83/20070227 found nothing
VBA32 3.11.2/20070227 found nothing
VirusBuster 4.3.19:9/20070227 found nothing
[ notes ]
Bit9 info: http://fileadvisor.bit9.com/services/extinfo.aspx?md5=d41d8cd98f00b204e9800998ecf8427e[/b]
According to the Avast Virus Chest that file is infected with Win32:Trojan-gen {Other}. Does that make any sense?
I think the reason nothing is found is the 0 byte file size, you can’t upload the file from the chest, it is a protected folder, you need to extract it to a temporary location as I said in the post
A google search for btgrab.dll returns many hits some relating to adware, http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453090726 and http://www.superadblocker.com/definition/btgrab/
So the detection may well be correct, in any case you should send a copy to avast for analysis.
I did move it to a temporary folder. I followed all of your instructions. That’s partially why the 0 byte file size didn’t make any sense to me. I’ll go ahead and send it over to avast. Thank you for your response once again. ![]()
Your welcome.