Sample viewer

vx.netlux.org/Virus.DOS.Goma.598

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:51:54.039024634Z 26 PC: 12c37 | Set disk transfer address
2018-12-17T22:51:54.041605132Z 250 PC: 12e08 | UNKNOWN!
2018-12-17T22:51:54.0428178Z 42 PC: 12e08 | Get date 0x12e08: ret
0x12e09: call 0x12e0c
0x12e0c: pop bp
0x12e0d: sub bp, 0x2e9
0x12e11: int3
0x12e12: ret
0x12e13: mov ah, 0x2a
0x12e15: call 0x22e06
0x12e18: cmp dh, 0xa
0x12e1b: jne 0x12e7a
0x12e1d: cmp dl, 0x16
0x12e20: jne 0x12e7a
0x12e22: call 0x12e3f
0x12e25: ret
0x12e26: mov ax, 0xca00
0x12e29: mov bx, 0x5442
0x12e2c: int 0x2f
0x12e2e: cmp al, 0
0x12e30: jne 0x12e33
0x12e32: ret
2018-12-17T22:51:54.045532279Z 71 PC: 12cc5 | Get current directory
2018-12-17T22:51:54.058905952Z 78 PC: 12cf2 | Find first file
2018-12-17T22:51:54.065659399Z 59 PC: 12cd6 | Change current directory
2018-12-17T22:51:54.070624406Z 59 PC: 12ce4 | Change current directory
2018-12-17T22:51:54.075322882Z 26 PC: 12c6d | Set disk transfer address
2018-12-17T22:51:54.078180219Z 9 PC: 12a7c | Display string (Could not find end pointer)
2018-12-17T22:51:54.082744303Z 76 PC: 12a81 | Terminate with return code (Return code = '0')