File has already been analysed:
MD5: 626309040459c3915997ef98ec1c8d40
First received: 2009.05.22 20:37:29 UTC
Date: 2010.02.24 19:34:40 UTC [>28D]
Results: 0/41
Permalink: analisis/f5227376ec2b6a4fc3b4a01ee2bc6b9fd01b1cabf5f2cd6dc68d2f8ec5d3f7c5-1267040080
I click on the permalink and this is the first thing I see...
File ntoskrnl.exe received on 2010.02.24 19:34:40 (UTC)
Current status: finished
Result: 0/41 (0.00%)
When you are presented with the “this file has been scanned before,” or words to that effect always have VT rescan it as that permalink shows the last scan was over a month ago, which is a very long time in virus terms. However since it has the same MD5 as the one you uploaded, 0/41 is a pretty clear indication of a false positive by a-squared.
Just post the link (URL) to the virustotal results page, the one that appears in the browser address bar.
Yes, a big fat false positive by a-squared (on your system) but strangely (well not so strange) it isn’t detected by a-squared on that set of results. Here is why, as I said it is an old submission “File ntoskrnl.exe received on 2010.02.24” and you really should have had VT scan the file again.
This looks like a-squared have updated their virus database and now detect that file as infected (still I believe an FP if no other scanners detect anything), a-squared does have a lot of false positives.