Is the CidProxy 2.0.9 contenting virus?

07/18/2011 17:05 yhya prince#1
The subject is clear from the title, Is the CidProxy 2.0.9 contenting virus/worm/trojan?

Antivirus results
AhnLab-V3 - 2011.07.18.07 - 2011.07.18 - -
AntiVir - 7.11.11.179 - 2011.07.18 - Worm/Autorun.boys.4
Antiy-AVL - 2.0.3.7 - 2011.07.15 - Worm/Win32.AutoRun.gen
Avast - 4.8.1351.0 - 2011.07.18 - -
Avast5 - 5.0.677.0 - 2011.07.18 - -
AVG - 10.0.0.1190 - 2011.07.18 - -
BitDefender - 7.2 - 2011.07.18 - Worm.Generic.314628
CAT-QuickHeal - 11.00 - 2011.07.18 - Worm.AutoRun.boys
ClamAV - 0.97.0.0 - 2011.07.18 - -
Commtouch - 5.3.2.6 - 2011.07.18 - -
Comodo - 9426 - 2011.07.18 - -
DrWeb - 5.0.2.03300 - 2011.07.18 - -
Emsisoft - 5.1.0.8 - 2011.07.18 - Virus.Worm.SuspectCRC!IK
eSafe - 7.0.17.0 - 2011.07.18 - Win32.TrojanHorse
eTrust-Vet - 36.1.8449 - 2011.07.18 - -
F-Prot - 4.6.2.117 - 2011.07.18 - -
F-Secure - 9.0.16440.0 - 2011.07.18 - Worm.Generic.314628
Fortinet - 4.2.257.0 - 2011.07.18 - -
GData - 22 - 2011.07.18 - Worm.Generic.314628
Ikarus - T3.1.1.104.0 - 2011.07.18 - Virus.Worm.SuspectCRC
Jiangmin - 13.0.900 - 2011.07.14 - -
K7AntiVirus - 9.108.4919 - 2011.07.18 - EmailWorm
Kaspersky - 9.0.0.837 - 2011.07.18 - Worm.Win32.AutoRun.boys
McAfee - 5.400.0.1158 - 2011.07.18 - W32/Autorun.worm!kl
McAfee-GW-Edition - 2010.1D - 2011.07.18 - W32/Autorun.worm!kl
Microsoft - 1.7000 - 2011.07.18 - -
NOD32 - 6304 - 2011.07.18 - probably a variant of Win32/Autorun.FDGIRDG
Norman - 6.07.10 - 2011.07.18 - W32/Suspicious_Gen2.KVTSZ
nProtect - 2011-07-18.01 - 2011.07.18 - -
Panda - 10.0.3.5 - 2011.07.18 - Trj/CI.A
PCTools - 8.0.0.5 - 2011.07.13 - -
Prevx - 3.0 - 2011.07.18 - -
Rising - 23.66.04.03 - 2011.07.15 - Trojan.Win32.Generic.1275A246
Sophos - 4.67.0 - 2011.07.18 - -
SUPERAntiSpyware - 4.40.0.1006 - 2011.07.18 - -
Symantec - 20111.1.0.186 - 2011.07.18 - WS.Reputation.1
TheHacker - 6.7.0.1.257 - 2011.07.18 - -
TrendMicro - 9.200.0.1012 - 2011.07.18 - -
TrendMicro-HouseCall - 9.200.0.1012 - 2011.07.18 - -
VBA32 - 3.12.16.4 - 2011.07.15 - Worm.AutoRun.boys
VIPRE - 9892 - 2011.07.18 - Worm.Win32.AutoRun
ViRobot - 2011.7.18.4575 - 2011.07.18 - -
VirusBuster - 14.0.128.0 - 2011.07.17 - Worm.AutoRun!RDuQ9hMv9jQ
File info:
MD5: 8831dcf3372dc961cc0b3de07cb7003d
SHA1: 9420931850cf8ac72578d3641bc7038728df5a10
SHA256: d101e9d8781f6046a0fa6af4b743e7e79dd8a07ff2eed83aad 7d5b6ba094dcf3
File size: 710329 bytes
Scan date: 2011-07-18 13:08:43 (UTC)
07/18/2011 17:21 BaussHacker#2
It's safe. Download virus.exe as well.
07/18/2011 17:27 Korvacs#3
Well based on all of the RED worm/trojan messages what do you think?

Of course its not safe, and of course theres a virus in it.

Closed.