The 4chan raid started as a result of the symantic forum mods deleting perfectly valid questions many hours before. This has already been mentioned.
What is more important is what pifts.exe actually is. It hides itself in a folder not viewable by normal users or administrators. The only way to get to the folder is to start explorer as SYSTEM by whatever tricks you wish...sounds pretty rootkitish to me.
Also it goes through all your web browsing history, interfaces with google desktop, modifies non-tempory files and then sends it to an IP address located in washington that resolves to a service called "Washington Swap Drive".
Symantic are lying out of their backsides, and the official response about an unsigned update was only issued after a long time of politician like evading of the question.
It has been speculated that it is part of the "Magic Lantern" software that symantic are known to agree with the FBI to not detect (See wikipedia, it's all there). I wouldn't want to comment on that. I do know that after the binary was deconstructed it contained a lot of "PADDINGX PADDINGX" etc...that sounds like a familiar technique eh?
But don't believe me, Anubis decompiled it here;
Symantic are lying. The way they handled this was incredibly Orwellian. Something is not right. Don't forget this.