Currently using Avast 4.8.1201 with VPS v.08027-1 on WinXP SP2
Found this virus warning while doing a boot-time scan.
Sign of “Win32:Trojan-gen {Other}” has been found in “C:\Program Files\WinMX\OLEDLG.DLL” file
Is this a false positive because I have not run this program for a very long time and all previous full system scans had not shown any warning. A scan with SUPERAntiSpyware & Spybot-S&D also yields nothing.
Uploaded the file to virustotal and got the following results. http://www.virustotal.com/analisis/15d925e4064962e14e1789bb54def12b
Well since avast doesn’t detect it in VT (can happen as VT may not have the same VPS version as the user) so it is possible that it was detected after a VPS update. Ensure you have the latest VPS update and scan the file again.
oledlg.dll - oledlg - DLL Information
DLL Name: Microsoft Windows OLE 2.0 User Interface Support
ole2.dll is a library which contains core OLE functions, more specific to common dialogue boxes.
If it is still detected it could well be an FP.
Send the sample to virus@avast.com zipped and password protected with the password in email body, a link to this topic might help and possible false positive in the subject.
Or you can also add the file to the User Files (File, Add) section of the avast chest (if not there already) where it can do no harm and send it from there (select the file, right click, email to Alwil Software). No need to zip and PW protect when the sample is sent from chest. A copy of the file/s will remain in the original location, so any further action you take can remove that.
If it is indeed a false positive, add it to the exclusions lists: Standard Shield, Customize, Advanced, Add and Program Settings, Exclusions
Restore it to its original location, periodically check it (scan it in the chest), there should still be a copy in the chest even though you restored it to the original location. When it is no longer detected then you can also remove it from the Standard Shield and Program Settings, exclusions.