Sample viewer

vx.netlux.org/Trojan.DOS.QHA.c

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:02:39.724161104Z 74 PC: 130b6 | Reallocate memory
2018-12-17T22:02:39.726240159Z 61 PC: 1346b | Open file (Filename = '.\BRUN45.EXE')
2018-12-17T22:02:39.732750027Z 61 PC: 1346b | Open file (Filename = 'C:\DOS\BRUN45.EXE')
2018-12-17T22:02:39.742009771Z 68 PC: 1325e | I/O control for devices (Set for = 'C:\DOS\BRUN45.EXE')
2018-12-17T22:02:39.744164167Z 68 PC: 1325e | I/O control for devices
2018-12-17T22:02:39.745517067Z 9 PC: 1326d | Display string (String= 'Input run-time module path: ')
2018-12-17T22:02:39.747824671Z 12 PC: 13275 | Flush input buffer and input