I downloaded Tuneup Utilities . After scanning the .exe file a Win32 -Gen Trojan was found . I moved the file to the vault. I then uploaded file to Virus Total and these are the results :
File TU2008TrialEN.exe received on 07.30.2008 02:13:50 (CET)
Antivirus Version Last Update Result
AhnLab-V3 - - -
AntiVir - - -
Authentium - - -
Avast - - Win32:Trojan-gen {Other}
AVG - - Downloader.Agent.AIRD
BitDefender - - -
CAT-QuickHeal - - -
ClamAV - - -
DrWeb - - Trojan.DownLoader.origin
eSafe - - -
eTrust-Vet - - -
Ewido - - -
F-Prot - - -
F-Secure - - Trojan-Downloader.Win32.Agent.xdp
Fortinet - - -
GData - - Trojan-Downloader.Win32.Agent.xdp
Ikarus - - Trojan-Downloader.Win32.Tiny.bpp
Kaspersky - - Trojan-Downloader.Win32.Agent.xdp
McAfee - - -
Microsoft - - -
NOD32v2 - - -
Norman - - -
Panda - - -
PCTools - - -
Prevx1 - - -
Rising - - -
Sophos - - -
Sunbelt - - -
Symantec - - -
TheHacker - - -
TrendMicro - - -
VBA32 - - -
ViRobot - - -
VirusBuster - - -
Webwasher-Gateway - - -
Additional information
MD5: 85c069c24432b23c08e1b503102fc4d2
SHA1: efaaa3e2816d13cb148b32db1dc9d5d1c7152cc1
SHA256: 292eb21a3b671e14bf05bc0549b9e05a64027670ce215178ef6bcf98b53f505b
SHA512: 4d2d014be42dfea33f14e2c0dd81a2695d3bfd35bc1fe02c70af45a6d2be4d014132b575516ef87b3e4fb8765a1e6d5b7e855940aee8013a53c6ef023d6cabe1
Is this a false positive? What is the next step?
I tried to email file to ALWIL but file was too large. How to send ?
It seems to me that many of the executable files downloaded from the web end up with some form of worm/trojan alert when scanned with AVAST. Any reason why this is so?
TKS