Sample viewer

vx.netlux.org/Virus.DOS.Zohra.4525

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:05:34.208541876Z 25 PC: 19a2e | Get default drive
2018-12-17T23:05:34.211591967Z 25 PC: 19a32 | Get default drive
2018-12-17T23:05:34.213283892Z 25 PC: 19a44 | Get default drive
2018-12-17T23:05:34.215097014Z 25 PC: 19b11 | Get default drive
2018-12-17T23:05:34.217117592Z 25 PC: 19b93 | Get default drive
2018-12-17T23:05:34.222227796Z 25 PC: 19c03 | Get default drive
2018-12-17T23:05:34.225932584Z 219 PC: 19c3b | UNKNOWN!
2018-12-17T23:05:34.22741711Z 82 PC: 19e8d | Get DOS internal pointers (SYSVARS)
2018-12-17T23:05:34.233511405Z 9 PC: 12a86 | Display string (String= 'Goat file (COM/ri..). Size=00006FEAh/0000028650d bytes. ')
2018-12-17T23:05:34.239843598Z 48 PC: 12a8f | Get DOS version
2018-12-17T23:05:34.241245907Z 61 PC: 9de66 | Open file (Filename = '')
2018-12-17T23:05:34.249503227Z 98 PC: 9e115 | Get current PSP
2018-12-17T23:05:34.251167184Z 98 PC: 9e115 | Get current PSP
2018-12-17T23:05:34.25418396Z 93 PC: 12afe | File sharing functions
2018-12-17T23:05:34.262973734Z 9 PC: 12a86 | Display string (String= 'Size change=11ADh/04525d. ')
2018-12-17T23:05:34.268000866Z 76 PC: 12ae3 | Terminate with return code (Return code = '1')