Hi forum friends,
Another weird phenomenon, baddies launching goodware. e.g. simple notepad files to discredit AV scan detection for Blackhole Kit launchers, see for instance here at this example: https://www.virustotal.com/file/42fdb8be709abed7a12a8c76e9e4ff5b85a54c659862c59a25b2f09baebef0df/analysis/
See the comment from EP_X0FF on the VT result page,
polonus