1.Файл из карантина -
VirusTotal, как и ожидалось чист (зашифрован). Detection ratio: 0/42. Интересный момент: Additional information-TrID: Mac OS X Universal Binary executable (100.0%), Эппл тут при чём ?
2.ctfmon.exe -
Detection ratio:0/42, avast! Online scanner - clean,
VirScan - clean,
Jotti - clean,
Metascan - clean (File Type-Win32 Executable MS Visual C++ (generic)) ?,
Gary's Hood - clean,
Comodo - Undetected (PId-0x4ac, Image Name-C:\TEST\sample.exe, Address-0x74736ac4, Mutex Name-CtfmonInstMutexDefaultS-1-5-21-1454471165-515967899-839522115-1003),
NoVirusThanks - clean,
Wepawet - clean,
Anubis - clean (Performs Registry Activities: The executable reads and modifies registry values. It may also create and monitor registry keys. Risk - yellow.)