Avira also reports aurora_wrapper. exe as malware so I submitted and reported the file to them as a false positive.
However, after analysis, they still claim it's malware.
Dear Sir or Madam,
Thank you for your email to Avira's virus lab.
Tracking number: INC01795619.
We received the following archive files:
File ID Filename Size (Byte) Result
28368580 quarantine.zip 2.58 MB OK
A listing of files contained inside archives alongside their results can be found below:
File ID Filename Size (Byte) Result
28368581 50751139.vir 2.62 MB MALWARE
Please find a detailed report concerning each individual sample below:
Filename Result
50751139.vir MALWARE
The file '50751139.vir' has been determined to be 'MALWARE'. Our analysts named the threat TR/Dropper.Gen7. The term "TR/" denotes a trojan horse that is able to spy out data, to violate your privacy or carry out unwanted modifications to the system. This file is detected by a special detection routine from the engine module.
Alternatively you can see the analysis result here:
https://analysis.avira.com/en/status?uniqueid=ytS5dK8L3FbBS43FbLgvHHm4B6CCkPqA&incidentid=1795619