Sample viewer

vx.netlux.org/Virus.DOS.Assignation.653

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:20:12.9863397Z 42 PC: 12c63 | Get date 0x12c63: mov ah, 0x2b
0x12c65: mov dx, 0x205
0x12c68: int 0x21
0x12c6a: mov eax, 0x4461726b
0x12c70: int 0x21
0x12c72: cmp eax, 0x4c6f7665
0x12c78: je 0x12c3c
0x12c7a: mov ax, ds
0x12c7c: dec ax
0x12c7d: mov ds, ax
0x12c7f: xor edi, edi
0x12c82: cmp byte ptr [edi], 0x59
0x12c86: jb 0x12c3c
0x12c88: sub word ptr [edi + 3], 0x100
0x12c8e: sub word ptr [edi + 0x12], 0x100
0x12c94: mov ax, word ptr [edi + 0x12]
0x12c98: push es
0x12c99: mov es, ax
0x12c9b: push cs
0x12c9c: pop ds
2018-12-17T22:20:12.98953017Z 43 PC: 12c6a | Set date
2018-12-17T22:20:13.009865691Z 114 PC: 12c72 | UNKNOWN!
2018-12-17T22:20:13.011240983Z 9 PC: 12a82 | Display string (String= 'Goat file (EXE). Size=000003E8h/0000001000d bytes. ')
2018-12-17T22:20:13.016285842Z 76 PC: 12a86 | Terminate with return code (Return code = '36')