Hi there,
I don't know how it's defending itself, but as I noted in my opening post, scanning the Registry comes up clean, but SUPERAntiSpyware acts very strangely in the Registry:
Goored isn't defending itself, it has no capability to do so (yet). The issue you are having will be the consequence of something else.
As for why it isn't detected by MBAM yet, well, the developers have a sample and they have all the information they need about the infection. I would think that they just haven't got round to it yet.
GooredFix was written purely to automate the process of identifying the infected folder and registry value, making the life of helpers on Malware forums easier. You are right, it came about because it turned out the AVs, MBAM, SAS and other general ASs weren't getting it. There is nothing special about this infection really, it doesn't try and hide itself other than making the plugin hidden from Firefox's Add-Ons list. The installer
might be bundled with other Malware, but as of yet this is undetermined (still looking for the source of this one).
Cheers,
-jpshortstuff