Sample viewer

vx.netlux.org/Trojan.DOS.Mortezia

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:52:10.363351864Z 67 PC: 17f3c | Get or set file attributes
2018-12-17T22:52:10.369512259Z 67 PC: 17f49 | Get or set file attributes
2018-12-17T22:52:10.708036619Z 61 PC: 17f53 | Open file (Filename = '<')
2018-12-17T22:52:10.714453264Z 26 PC: 17f66 | Set disk transfer address
2018-12-17T22:52:10.716144883Z 78 PC: 17f6f | Find first file
2018-12-17T22:52:10.720247235Z 47 PC: 17f73 | Get disk transfer address
2018-12-17T22:52:10.721247945Z 66 PC: 17ed8 | Move file pointer
2018-12-17T22:52:10.723239985Z 63 PC: 17ee2 | Read file or device (Read 12 bytes on handle 5)
2018-12-17T22:52:10.725456231Z 66 PC: 17ed8 | Move file pointer
2018-12-17T22:52:10.726845058Z 63 PC: 17ee2 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:52:10.729985515Z 66 PC: 17ed8 | Move file pointer
2018-12-17T22:52:10.732970513Z 63 PC: 17ee2 | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:52:10.741690954Z 66 PC: 17ed8 | Move file pointer
2018-12-17T22:52:10.743369074Z 64 PC: 17eec | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:52:10.745567859Z 66 PC: 17ed8 | Move file pointer
2018-12-17T22:52:10.747360108Z 64 PC: 17eec | Write file or device (Write 90 bytes on handle 5)
2018-12-17T22:52:10.749480044Z 62 PC: 18056 | Close file
2018-12-17T22:52:10.755969374Z 67 PC: 1806b | Get or set file attributes
2018-12-17T22:52:10.766630444Z 9 PC: 12a51 | Display string (String= 'This is a mid COM sample!')
2018-12-17T22:52:10.769345753Z 76 PC: 12a56 | Terminate with return code (Return code = '0')