Sample viewer

vx.netlux.org/Virus.DOS.BlackFlash.813.b

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T21:54:12.86439612Z 127 PC: 12c6d | UNKNOWN!
2018-12-17T21:54:12.866237231Z 42 PC: 12c85 | Get date 0x12c85: cmp dh, 5
0x12c88: nop
0x12c89: nop
0x12c8a: push es
0x12c8b: mov ax, es
0x12c8d: sub byte ptr es:[2], 0x7f
0x12c93: dec ax
0x12c94: mov es, ax
0x12c96: mov dx, word ptr es:[3]
0x12c9b: sub dx, 0x7f
0x12c9e: mov word ptr es:[3], dx
0x12ca3: mov di, ax
0x12ca5: add di, dx
0x12ca7: inc di
0x12ca8: pop es
0x12ca9: mov ax, cs
0x12cab: sub ax, word ptr cs:[si + 0x10]
0x12caf: add ax, word ptr cs:[si + 2]
0x12cb3: push ax
0x12cb4: push word ptr cs:[si]
2018-12-17T21:54:12.86973694Z 9 PC: 12a82 | Display string (String= 'Goat file (EXE). Size=000003E8h/0000001000d bytes. ')
2018-12-17T21:54:12.874963514Z 76 PC: 12a86 | Terminate with return code (Return code = '36')