Page 2 of 2 FirstFirst 12
Results 11 to 15 of 15

Thread: JESTERTB.DLL possible false positive

  1. #11
    Senior Member
    Join Date
    May 2009
    Posts
    236

    Default

    How did you remove it? Did you use SpyBot S&D or just manually delete it and restart windows?

    Has SpyBot S&D completed the startup scan without incident? If so, check your installed programs to see if there are any abnormalities in their performance. If the file was legitimate, then perhaps the program that it came with should have an obvious error when you attempt run it.

  2. #12
    Senior Member Yodama's Avatar
    Join Date
    Oct 2005
    Location
    Buchenheim
    Posts
    1,110

    Default

    hello,

    I received the submitted jestertb.dll file and the analysis showed that it is not a part of Virtumonde.sdn. However this does not mean that the file is legit.

    The file is still highly suspicious as it does not contain information about its origin or purpose, further more the files export function and name indicate that the file is possibly part of an unwanted toolbar.

    To research this matter I would like to have more information on this issue.
    Please create a full Spybot S&D report file by right clicking the scan results screen (no scan required) and selecting to save a full report file.

    Attach this report file to your next post or email it to detections@spybot.info
    I also would like to have a look at some folder contents, so those who send an email or already did concerning this matter will also get a batch file which will create text files listing the contents of some folders.
    born in the shadow to die in the shadow, that is the fate of the shinobi

    Spybot S&D Downloads

    Please help us improve Spybot and download our distributed testing client.

  3. #13
    Junior Member
    Join Date
    Oct 2005
    Location
    Cheshire, UK
    Posts
    8

    Default post

    Quote Originally Posted by Yodama View Post
    hello,

    I received the submitted jestertb.dll file and the analysis showed that it is not a part of Virtumonde.sdn. However this does not mean that the file is legit.

    The file is still highly suspicious as it does not contain information about its origin or purpose, further more the files export function and name indicate that the file is possibly part of an unwanted toolbar.

    To research this matter I would like to have more information on this issue.
    Please create a full Spybot S&D report file by right clicking the scan results screen (no scan required) and selecting to save a full report file.

    Attach this report file to your next post or email it to detections@spybot.info
    I also would like to have a look at some folder contents, so those who send an email or already did concerning this matter will also get a batch file which will create text files listing the contents of some folders.
    Yodama

    Have sent the extra files you requested already via email. Tried placing the full report on here but kept getting error - too many characters. Will now send full report via email.

    Much obliged

    Gandalf

    edited attached as zipfile worked.
    Last edited by Gandalf; 2010-06-22 at 10:00. Reason: correction

  4. #14
    Senior Member Yodama's Avatar
    Join Date
    Oct 2005
    Location
    Buchenheim
    Posts
    1,110

    Default

    thank you for the requested files.

    With these I could make sure that the jestertb.dll in question is harmless.
    Further research showed that it belongs to flashjester a software for flash tools.

    So you may have gotten the jestertb.dll while using a flash tool that was made with flashjester.
    born in the shadow to die in the shadow, that is the fate of the shinobi

    Spybot S&D Downloads

    Please help us improve Spybot and download our distributed testing client.

  5. #15
    Junior Member
    Join Date
    Oct 2005
    Location
    Cheshire, UK
    Posts
    8

    Default

    Quote Originally Posted by Yodama View Post
    thank you for the requested files.

    With these I could make sure that the jestertb.dll in question is harmless.
    Further research showed that it belongs to flashjester a software for flash tools.

    So you may have gotten the jestertb.dll while using a flash tool that was made with flashjester.
    Many thanks Yodama for confirming that the file is harmless. I appreciate the effort.

    Gandalf

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •