Blackhole goodware scan to discredit av detection!

Hi forum friends,

Another weird phenomenon, baddies launching goodware. e.g. simple notepad files to discredit AV scan detection for Blackhole Kit launchers, see for instance here at this example: https://www.virustotal.com/file/42fdb8be709abed7a12a8c76e9e4ff5b85a54c659862c59a25b2f09baebef0df/analysis/

See the comment from EP_X0FF on the VT result page,

polonus

Is this something similar or real malware?
https://www.virustotal.com/url/24cc8b385af6d259559c9fda6840d2081458a25c83b6c95e537c99bfb1bdc607/analysis/1327269927/
Given clean here: http://www.garyshood.com/virus/results.php?r=2d2363dc2645d1de12059de651e2d2eb
but malicious here: http://urlquery.net/report.php?id=17233
See: http://wepawet.iseclab.org/view.php?hash=979918c631e9cfbb7cf033610765fd8c&t=1327270987&type=js

polonus