Sample viewer

vx.netlux.org/Virus.DOS.SVC.2936.c

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:11:39.830973249Z 42 PC: 12af2 | Get date 0x12af2: mov word ptr cs:[si + 0xb1b], cx
0x12af7: mov byte ptr cs:[si + 0xb1d], dh
0x12afc: mov byte ptr cs:[si + 0xb1e], dl
0x12b01: mov ah, 0
0x12b03: int 0x1a
0x12b05: mov word ptr cs:[si + 0xb1f], dx
0x12b0a: pop bx
0x12b0b: pop ax
0x12b0c: pop cx
0x12b0d: pop dx
0x12b0e: pop es
0x12b0f: pop ds
0x12b10: push es
0x12b11: xor bx, bx
0x12b13: mov ds, bx
0x12b15: les bx, ptr [0x84]
0x12b19: mov word ptr cs:[si + 0xb5c], bx
0x12b1e: mov word ptr cs:[si + 0xb5e], es
0x12b23: les bx, ptr [0x20]
0x12b27: mov word ptr cs:[si + 0xb54], bx
2018-12-17T23:11:39.834487264Z 73 PC: 12b49 | Release memory
2018-12-17T23:11:39.836915088Z 72 PC: 12b55 | Allocate memory
2018-12-17T23:11:39.838837358Z 74 PC: 12b6b | Reallocate memory
2018-12-17T23:11:39.84100215Z 74 PC: 12b83 | Reallocate memory