Is Autoruns.zip infested with adware?

Downloaded from: http://download.sysinternals.com/files/Autoruns.zip
Checked with Metascan Online: https://www.metascan-online.com/en/scanresult/file/d1e7525dbd1743098d9116bf6e75040f
Detected W32.Toolbar.CrossRider.AE.czia.mg (Filseclab).
Is this a real detection or a FP?

polonus

content of zip

https://www.virustotal.com/en/file/48eafdbfa0ce0933ed4c3ee18368641292698638af602291420370cbaa830fc9/analysis/1422629364/
https://www.virustotal.com/en/file/7c21f78c63e32c8f83f68fa92d2752689d0221fd4567e27f98cd8cb25605a367/analysis/1422629376/
https://www.virustotal.com/en/file/0a5f832d81f9496c66319a2ec95d4d5536b21e0b483e05de3a0574f73deac33c/analysis/1422629389/

Hi Pondus,

Now I dare to unzip that Autoruns. ;D I became interested as I read autoruns comes now combined with VT.
So that will be interesting.
In the old days it was a steady companion to the now obsolete HJT scan routines.
When Pondus says the file is probably harmless and VT copies that verdict, I trust these sources of info. :wink:
Maybe Eddy will also be interested in this download for his “experiments”. 8)

polonus

There was an EULA also in that zip … attached if you want to read it :wink: