Originally Posted by Victhor
PJN123 (Pieter) is a well known Winamp skinner since forever, it doesn't make sense he would infect the installer files..
Yes, probably a false positive. Extracted the content of ClassicPro_2.03_ymNFyxvIdaM_(2017-03-09).exe, then zipped the extracted folder and uploaded to Virustotal. Now it is 2/57:
As you can see, Jiangmin reports the same AdWare.Inffinity.c but Qihoo-360 changed its mind and now finds virus.acad.bursted.j2 instead of HEUR/QVM20.1.0000.Malware.Gen. McAfee-GW-Edition does not find anything suspicious.
Then I uploaded System.dll alone. The result is 1/61: Bkav has found W32.eHeur.Malware03. Whatever has heur in its name is just a guess that it might contain malware. Not a definite find.