I've just reran the microjoin exploit that downloads heaps
including an installer for the rogue AV Security Suite and this new morphed installer goes zero day over Jottis.
ouyuerdtssd.exe - Scan finished. 0 out of 19 scanners reported malware. ouyuerdtssd.exe - Jotti's malware scan
So in effect this one would bypass just about every major AV/AM until they get a hold of it and added to their definitions. And yes, MBAM doesn't hit this one as yet either but will within the next update or two.
When most AV's start hitting this exe the rogue authors will release a new morphed version making sure it's not detected by most.
Dunno what's up with Virus Total but seems to be playing up a bit lately?