Nice Link,
VT Scan on upx packed original
Code:
Antivirus Version Last Update Result
AhnLab-V3 2011.09.18.00 2011.09.18 -
AntiVir 7.11.14.223 2011.09.16 -
Antiy-AVL 2.0.3.7 2011.09.18 -
Avast 4.8.1351.0 2011.09.18 -
Avast5 5.0.677.0 2011.09.18 -
AVG 10.0.0.1190 2011.09.18 -
BitDefender 7.2 2011.09.18 -
ByteHero 1.0.0.1 2011.09.13 -
CAT-QuickHeal 11.00 2011.09.18 -
ClamAV 0.97.0.0 2011.09.18 Trojan.Small-3149
Commtouch 5.3.2.6 2011.09.17 W32/SecRisk-ProcessPatcher-Sml-based!Maximus
Comodo 10158 2011.09.18 -
DrWeb 5.0.2.03300 2011.09.18 -
Emsisoft 5.1.0.11 2011.09.18 -
eSafe 7.0.17.0 2011.09.15 -
eTrust-Vet 36.1.8566 2011.09.17 -
F-Prot 4.6.2.117 2011.09.17 W32/SecRisk-ProcessPatcher-Sml-based!Maximus
F-Secure 9.0.16440.0 2011.09.18 -
Fortinet 4.3.370.0 2011.09.18 -
GData 22 2011.09.18 -
Ikarus T3.1.1.107.0 2011.09.18 -
Jiangmin 13.0.900 2011.09.18 -
K7AntiVirus 9.113.5150 2011.09.17 Trojan
Kaspersky 9.0.0.837 2011.09.18 -
McAfee 5.400.0.1158 2011.09.18 -
McAfee-GW-Edition 2010.1D 2011.09.17 -
Microsoft 1.7604 2011.09.18 -
NOD32 6474 2011.09.18 -
Norman 6.07.11 2011.09.17 -
nProtect 2011-09-18.01 2011.09.18 -
Panda 10.0.3.5 2011.09.18 -
PCTools 8.0.0.5 2011.09.18 -
Prevx 3.0 2011.09.18 -
Rising 23.75.04.02 2011.09.16 -
Sophos 4.69.0 2011.09.18 -
SUPERAntiSpyware 4.40.0.1006 2011.09.17 Trojan.Downloader-Gen/Suspicious
Symantec 20111.2.0.82 2011.09.18 -
TheHacker 6.7.0.1.298 2011.09.17 -
TrendMicro 9.500.0.1008 2011.09.18 PAK_Generic.001
TrendMicro-HouseCall 9.500.0.1008 2011.09.18 PAK_Generic.001
VBA32 3.12.16.4 2011.09.16 -
VIPRE 10513 2011.09.18 -
ViRobot 2011.9.17.4674 2011.09.18 -
VirusBuster 14.0.219.0 2011.09.18 -
VT Scan of unpacked target
Code:
Antivirus Version Last Update Result
AhnLab-V3 2011.09.18.00 2011.09.18 -
AntiVir 7.11.14.223 2011.09.16 -
Antiy-AVL 2.0.3.7 2011.09.18 -
Avast 4.8.1351.0 2011.09.18 -
Avast5 5.0.677.0 2011.09.18 -
AVG 10.0.0.1190 2011.09.18 -
BitDefender 7.2 2011.09.18 Gen:Trojan.Heur.FU.aqW@aCWKc5di
ByteHero 1.0.0.1 2011.09.13 -
CAT-QuickHeal 11.00 2011.09.18 -
ClamAV 0.97.0.0 2011.09.18 Trojan.Small-3149
Commtouch 5.3.2.6 2011.09.17 W32/SecRisk-ProcessPatcher-Sml-based!Maximus
Comodo 10158 2011.09.18 -
Emsisoft 5.1.0.11 2011.09.18 -
eSafe 7.0.17.0 2011.09.15 -
eTrust-Vet 36.1.8566 2011.09.17 -
F-Prot 4.6.2.117 2011.09.17 W32/SecRisk-ProcessPatcher-Sml-based!Maximus
F-Secure 9.0.16440.0 2011.09.18 Gen:Trojan.Heur.FU.aqW@aCWKc5di
Fortinet 4.3.370.0 2011.09.18 -
GData 22 2011.09.18 Gen:Trojan.Heur.FU.aqW@aCWKc5di
Ikarus T3.1.1.107.0 2011.09.18 -
Jiangmin 13.0.900 2011.09.18 -
K7AntiVirus 9.113.5150 2011.09.17 Trojan
Kaspersky 9.0.0.837 2011.09.18 -
McAfee 5.400.0.1158 2011.09.18 -
McAfee-GW-Edition 2010.1D 2011.09.17 -
Microsoft 1.7604 2011.09.18 -
NOD32 6474 2011.09.18 -
Norman 6.07.11 2011.09.17 -
nProtect 2011-09-18.01 2011.09.18 -
Panda 10.0.3.5 2011.09.18 -
PCTools 8.0.0.5 2011.09.18 -
Prevx 3.0 2011.09.18 -
Rising 23.75.04.02 2011.09.16 -
Sophos 4.69.0 2011.09.18 -
SUPERAntiSpyware 4.40.0.1006 2011.09.17 -
Symantec 20111.2.0.82 2011.09.18 -
TheHacker 6.7.0.1.298 2011.09.17 -
TrendMicro 9.500.0.1008 2011.09.18 -
TrendMicro-HouseCall 9.500.0.1008 2011.09.18 -
VBA32 3.12.16.4 2011.09.16 -
VIPRE 10513 2011.09.18 -
ViRobot 2011.9.17.4674 2011.09.18 -
VirusBuster 14.0.219.0 2011.09.18 -
I am not the kind of person to take Antivirus flags at face value either, its probably just the particular choice of libraries and methods employed ;).
Nice idea, different from the norm, and not something A3C will ever cater for with its n00b obstruction only defence intentions.
Respect
Vlad
sorry for english, don't trust google translate