Hi <--This is the one syllable part, Welcome ![:)]()
There seems to be false Dialer alerts for this file, can you say what scanner detects it,
Ive just downloaded two different btwebcontrol.cab files from the BT (British Telecommunications plc) site which are both being detected as a Dialer,
Here's the results for the file
File: btwebcontrol.dll
Date: 04/18/2006 04:29:41 (CET)
----
AntiVir 6.34.0.24/20060417 found [DIAL/94208.A.6]
AVG 386/20060418 found [Potentially harmful program Dialer.AEH]
Avira 6.34.0.56/20060417 found [DIAL/94208.A.6]
Ewido 3.5/20060417 found [Dialer.BT.b]
Ikarus 0.2.59.0/20060417 found [Dialer]
Kaspersky 4.0.2.24/20060418 found [not-a-virus:Dialer.Win32.BT.b]
Panda 9.0.0.4/20060417 found [suspicious file]
TheHacker 5.9.7.130/20060416 found [Trojan/Dialer.BT.b]
UNA 1.83/20060417 found [Dialer.BTWeb]
VBA32 3.10.5/20060417 found [RiskWare.Dialer.BT.b]
the .cab file contains the above dll file and a .inf file which has this written inside it:
[version]
signature="$CHICAGO$"
AdvancedINF=2.0
[Add.Code]
btwebcontrol.dll=btwebcontrol.dll
[btwebcontrol.dll]
file-win32-x86=thiscab
clsid={EC5A4E7B-02EB-451D-B310-D5F2E0A4D8C3}
FileVersion=2,0,0,4
RegisterServer=yes
The CLSID is genuine (listed Here). Its strange why so many different vendors detect this as a dialer but if there is any traces of a dialer it will be for the BT Yahoo Internet service and not for contacting premium rate numbers so in my opinion its a False Positive from any scanner that show's it as a Dialer infection.
Hope that helps
Andy