Sample viewer

vx.netlux.org/Virus.DOS.Hera.1208

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:01:27.329384326Z 44 PC: 12cb6 | Get time 0x12cb6: cmp ax, 0x2bad
0x12cb9: jne 0x12cbe
0x12cbb: jmp 0x12ccc
0x12cbe: mov ax, cs
0x12cc0: sub ax, word ptr cs:[bp + 0x137]
0x12cc5: sub al, 0x10
0x12cc7: mov ds, ax
0x12cc9: call 0x12d2b
0x12ccc: pop bp
0x12ccd: pop di
0x12cce: pop es
0x12ccf: pop si
0x12cd0: pop ds
0x12cd1: pop dx
0x12cd2: pop cx
0x12cd3: pop bx
0x12cd4: pop ax
0x12cd5: mov ax, 0x1294
0x12cd8: cli
0x12cd9: mov ss, ax
2018-12-17T22:01:27.332154613Z 9 PC: 12a82 | Display string (String= 'Goat file (EXE). Size=000003E8h/0000001000d bytes. ')
2018-12-17T22:01:27.336830211Z 76 PC: 12a86 | Terminate with return code (Return code = '36')