Win32:Torxy

This virus seems to be erroneously reported in file TUBasic.bpl which is a part of “TuneUp Utilities 2004”. Deleting this file disables certain parts of the utility which then had to be downloaded and reinstalled from the vendors website (www.tune-up.com). After reinstallation Avast once again reports Win32:Torxy in this file but I have chosen to ignore the warning unless advised to the contrary by Alwil.

Hi rgraft,
Submit the file to Jotti’s scanner and tell us the results. (http://virusscan.jotti.dhs.org/)
Then send the file (password protected) along with the password and a short description to: virus[AT]asw.cz
If it is a false possitive, Pavel will fix it in the next VPS update.

Edit:
Take a look here also. Same problem exactly →
http://forum.avast.com/index.php?board=2;action=display;threadid=8504

Jotti’s scanner report follows:

File: TUBasic.bpl
Status: MIGHT BE INFECTED/MALWARE (Sandbox emulation took a long time and/or runtime packers were found, this is suspicious. Normally programs aren’t packed and don’t force the sandbox into lengthy emulation. Do realize no scanner issued any warning, the file can very well be harmless. Caution is advised, however.) (Note: this file has been scanned before. Therefore, this file’s scan results will not be stored in the database)
Packers detected: PE_PATCH

AntiVir No viruses found (0.14 seconds taken)
Avast No viruses found (1.51 seconds taken)
BitDefender No viruses found (0.33 seconds taken)
ClamAV No viruses found (0.33 seconds taken)
Dr.Web No viruses found (0.47 seconds taken)
F-Prot Antivirus No viruses found (0.06 seconds taken)
Kaspersky Anti-Virus No viruses found (0.57 seconds taken)
mks_vir No viruses found (0.21 seconds taken)
NOD32 No viruses found (0.35 seconds taken)
Norman Virus Control No viruses found (0.12 seconds taken)

File emailed with password as requested