I’m getting Virus Alerts for Win32:trojan-gen{other} from C:\WINDOWS\system32\rtfeng.dll. I am running Avast Home Edition 4.8.1201 with 080626-1.
Results from VirusTotal
File rtfeng.dll received on 06.26.2008 19:41:20 (CET)
Current status: Loading … queued waiting scanning finished NOT FOUND STOPPED
Result: 3/33 (9.1%)
Loading server information…
Your file is queued in position: 5.
Estimated start time is between 56 and 80 seconds.
Do not close the window until scan is complete.
The scanner that was processing your file is stopped at this moment, we are going to wait a few seconds to try to recover your result.
If you are waiting for more than five minutes you have to resend your file.
Your file is being scanned by VirusTotal in this moment,
results will be shown as they’re generated.
Compact Print results
Your file has expired or does not exists.
Service is stopped in this moments, your file is waiting to be scanned (position: ) for an undefined time.
You can wait for web response (automatic reload) or type your email in the form below and click “request” so the system sends you a notification when the scan is finished.
Email:
Antivirus Version Last Update Result
AhnLab-V3 2008.6.26.0 2008.06.26 -
AntiVir 7.8.0.59 2008.06.26 -
Authentium 5.1.0.4 2008.06.25 -
Avast 4.8.1195.0 2008.06.26 Win32:Trojan-gen {Other}
AVG 7.5.0.516 2008.06.26 -
BitDefender 7.2 2008.06.26 -
CAT-QuickHeal 9.50 2008.06.26 -
ClamAV 0.93.1 2008.06.26 -
DrWeb 4.44.0.09170 2008.06.26 -
eSafe 7.0.17.0 2008.06.26 -
eTrust-Vet 31.6.5907 2008.06.26 -
Ewido 4.0 2008.06.26 -
F-Prot 4.4.4.56 2008.06.25 -
F-Secure 7.60.13501.0 2008.06.24 -
Fortinet 3.14.0.0 2008.06.26 -
GData 2.0.7306.1023 2008.06.26 Win32:Trojan-gen
Ikarus T3.1.1.26.0 2008.06.26 -
Kaspersky 7.0.0.125 2008.06.26 -
McAfee 5326 2008.06.26 -
Microsoft None 2008.06.26 -
NOD32v2 3222 2008.06.26 -
Norman 5.80.02 2008.06.26 -
Panda 9.0.0.4 2008.06.26 -
Prevx1 V2 2008.06.26 -
Rising 20.50.32.00 2008.06.26 -
Sophos 4.30.0 2008.06.26 -
Sunbelt 3.0.1153.1 2008.06.15 -
Symantec 10 2008.06.26 -
TheHacker 6.2.92.362 2008.06.26 Aplicacion/PCPandora.a
TrendMicro 8.700.0.1004 2008.06.26 -
VBA32 3.12.6.8 2008.06.26 -
VirusBuster 4.5.11.0 2008.06.23 -
Webwasher-Gateway 6.6.2 2008.06.26 -
Additional information
File size: 2858 bytes
MD5…: 327992e1b9fbaf047e8b640482a3b513
SHA1…: c4ec69751fd9b3f09312c4b40cd435d5de3834c4
SHA256: 3a7fc607280833d58f85acf5c2de990468825e06e5b4509a8e544a8347103702
SHA512: 155de868c256edef1af4c7a9d4b27e2957746011c7680fc348048cdea77d0f1e
069f5de72edfe702bb9e11c0e0d138da478f3dd3320b3034b6516428d81bf056
PEiD…: -
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x10000000
timedatestamp…: 0x438c4067 (Tue Nov 29 11:49:59 2005)
machinetype…: 0x14c (I386)
( 1 sections )
name viradd virsiz rawdsiz ntrpy md5
.reloc 0x1000 0x8 0x200 0.02 2c38765194d27b75f56d0565088a53ee
( 0 imports )
( 0 exports )