Don't ask me what picks it up. I'm gonna see why something would pick it up.
Heres the EXE that I compiled myself.
Code:
VirSCAN.org Scanned Report :
Scanned time : 2008/09/13 18:37:51 (CDT)
Scanner results: 22% Scanner(8/36) found malware!
File Name : TatniumD3D.exe
File Size : 32768 byte
File Type : PE32 executable for MS Windows (GUI) Intel 80386 32-bit
MD5 : 4e297c057f5775304b4279a5dd1a6a2d
SHA1 : ab3696b07a60dd8912e03672c258b6dc44bba917
Online report : https://virscan.org/report/743127afce0a937f7e5023c69b570884.html
Scanner Engine Ver Sig Ver Sig Date Time Scan result
a-squared 4.0.0.14 2008.09.12 2008-09-12 1.40 -
AhnLab V3 2008.09.13.00 2008.09.13 2008-09-13 0.90 -
AntiVir 7.8.1.28 7.0.6.154 2008-09-12 2.22 TR/Hijacker.Gen
Arcavir 1.0.5 200809131026 2008-09-13 1.21 -
AVAST! 3.0.1 080913-0 2008-09-13 0.68 Win32:Trojan-gen {Other}
AVG 7.5.52.442 270.6.21/1670 2008-09-13 1.57 -
BitDefender 7.60825.1756248 7.20919 2008-09-14 3.07 -
CA (VET) 9.0.0.143 31.6.6087 2008-09-12 5.17 -
ClamAV 0.94 8234 2008-09-14 0.02 -
Comodo 2.11 2.0.0.645 2008-09-13 0.42 -
CP Secure 1.1.0.715 2008.09.14 2008-09-14 7.17 -
Dr.Web 4.44.0.9170 2008.09.13 2008-09-13 3.14 Trojan.Armin
ewido 4.0.0.2 2008.09.13 2008-09-13 2.67 -
F-Prot 4.4.4.56 20080913 2008-09-13 1.03 Possible W32/Heuristic-KPP!Eldorado (not disinfectable)
F-Secure 5.51.6100 2008.09.13.02 2008-09-13 3.33 -
Fortinet 2.81-3.113 9.545 2008-09-13 0.14 PossibleThreat
ViRobot 20080912 2008.09.12 2008-09-12 0.40 -
Ikarus T3.1.01.34 2008.09.13.71452 2008-09-13 3.38 Trojan.Armin
JiangMin 11.0.706 2008.09.13 2008-09-13 1.22 -
Kaspersky 5.5.10 2008.09.13 2008-09-13 0.05 -
KingSoft 2008.1.14.15 2008.9.13.15 2008-09-13 0.63 -
McAfee 5.3.00 5383 2008-09-12 1.79 -
Microsoft 1.3903 2008.09.14 2008-09-14 3.89 -
mks_vir 2.01 2008.09.12 2008-09-12 2.62 -
Norman 5.93.01 5.93.00 2008-09-12 5.18 -
Panda 9.05.01 2008.09.13 2008-09-13 2.30 -
Trend Micro 8.700-1004 5.540.16 2008-09-13 0.03 -
Quick Heal 9.50 2008.09.13 2008-09-13 1.75 -
Rising 20.0 20.61.42.00 2008-09-12 0.75 -
Sophos 2.78.0 4.33 2008-09-14 1.80 -
Sunbelt 3.1.1633.1 2230 2008-09-12 0.48 RiskTool.Win32.ProcessPatcher.Nor!cobra (v)
Symantec 1.3.0.24 20080913.003 2008-09-13 0.07 -
nProtect 2008-09-13.00 2106924 2008-09-13 4.06 -
The Hacker 6.3.0.9 v00082 2008-09-13 0.48 -
VBA32 3.12.8.5 20080913.0858 2008-09-13 1.14 Trojan.Armin
VirusBuster 4.5.11.10 10.87.11/624200 2008-09-13 0.84 -
And heres the DLL
Code:
VirSCAN.org Scanned Report :
Scanned time : 2008/09/13 18:37:51 (CDT)
Scanner results: 22% Scanner(8/36) found malware!
File Name : TatniumD3D.exe
File Size : 32768 byte
File Type : PE32 executable for MS Windows (GUI) Intel 80386 32-bit
MD5 : 4e297c057f5775304b4279a5dd1a6a2d
SHA1 : ab3696b07a60dd8912e03672c258b6dc44bba917
Online report : https://virscan.org/report/743127afce0a937f7e5023c69b570884.html
Scanner Engine Ver Sig Ver Sig Date Time Scan result
a-squared 4.0.0.14 2008.09.12 2008-09-12 1.40 -
AhnLab V3 2008.09.13.00 2008.09.13 2008-09-13 0.90 -
AntiVir 7.8.1.28 7.0.6.154 2008-09-12 2.22 TR/Hijacker.Gen
Arcavir 1.0.5 200809131026 2008-09-13 1.21 -
AVAST! 3.0.1 080913-0 2008-09-13 0.68 Win32:Trojan-gen {Other}
AVG 7.5.52.442 270.6.21/1670 2008-09-13 1.57 -
BitDefender 7.60825.1756248 7.20919 2008-09-14 3.07 -
CA (VET) 9.0.0.143 31.6.6087 2008-09-12 5.17 -
ClamAV 0.94 8234 2008-09-14 0.02 -
Comodo 2.11 2.0.0.645 2008-09-13 0.42 -
CP Secure 1.1.0.715 2008.09.14 2008-09-14 7.17 -
Dr.Web 4.44.0.9170 2008.09.13 2008-09-13 3.14 Trojan.Armin
ewido 4.0.0.2 2008.09.13 2008-09-13 2.67 -
F-Prot 4.4.4.56 20080913 2008-09-13 1.03 Possible W32/Heuristic-KPP!Eldorado (not disinfectable)
F-Secure 5.51.6100 2008.09.13.02 2008-09-13 3.33 -
Fortinet 2.81-3.113 9.545 2008-09-13 0.14 PossibleThreat
ViRobot 20080912 2008.09.12 2008-09-12 0.40 -
Ikarus T3.1.01.34 2008.09.13.71452 2008-09-13 3.38 Trojan.Armin
JiangMin 11.0.706 2008.09.13 2008-09-13 1.22 -
Kaspersky 5.5.10 2008.09.13 2008-09-13 0.05 -
KingSoft 2008.1.14.15 2008.9.13.15 2008-09-13 0.63 -
McAfee 5.3.00 5383 2008-09-12 1.79 -
Microsoft 1.3903 2008.09.14 2008-09-14 3.89 -
mks_vir 2.01 2008.09.12 2008-09-12 2.62 -
Norman 5.93.01 5.93.00 2008-09-12 5.18 -
Panda 9.05.01 2008.09.13 2008-09-13 2.30 -
Trend Micro 8.700-1004 5.540.16 2008-09-13 0.03 -
Quick Heal 9.50 2008.09.13 2008-09-13 1.75 -
Rising 20.0 20.61.42.00 2008-09-12 0.75 -
Sophos 2.78.0 4.33 2008-09-14 1.80 -
Sunbelt 3.1.1633.1 2230 2008-09-12 0.48 RiskTool.Win32.ProcessPatcher.Nor!cobra (v)
Symantec 1.3.0.24 20080913.003 2008-09-13 0.07 -
nProtect 2008-09-13.00 2106924 2008-09-13 4.06 -
The Hacker 6.3.0.9 v00082 2008-09-13 0.48 -
VBA32 3.12.8.5 20080913.0858 2008-09-13 1.14 Trojan.Armin
VirusBuster 4.5.11.10 10.87.11/624200 2008-09-13 0.84 -
Don't ask me why it finds it as a virus. Just because I use some coding to 'infect' Engine.exe so fuctions won't run.
And none of the good AVs don't find anything.