Sample viewer

vx.netlux.org/Virus.DOS.Companion.935

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:11:11.125624246Z 74 PC: 12a47 | Reallocate memory
2018-12-17T23:11:11.127580548Z 42 PC: 12adc | Get date 0x12adc: ret
0x12add: mov si, dx
0x12adf: lodsb al, byte ptr [si]
0x12ae0: test al, al
0x12ae2: je 0x12ae8
0x12ae4: cmp al, 0x2e
0x12ae6: jne 0x12adf
0x12ae8: ret
0x12ae9: mov word ptr [si], 0x5845
0x12aed: mov byte ptr [si + 2], 0x45
0x12af1: ret
0x12af2: mov word ptr [si], 0x4f43
0x12af6: mov byte ptr [si + 2], 0x4d
0x12afa: ret
0x12afb: push ax
0x12afc: push bx
0x12afd: push si
0x12afe: push es
0x12aff: mov ah, 0x2f
0x12b01: call 0x22ad6
2018-12-17T23:11:11.129788285Z 73 PC: 12adc | Release memory
2018-12-17T23:11:11.13121723Z 75 PC: 12adc | Execute program
2018-12-17T23:11:11.138280717Z 77 PC: 12adc | Get program return code
2018-12-17T23:11:11.139468486Z 76 PC: 12adc | Terminate with return code (Return code = '0')