Sample viewer

vx.netlux.org/Trojan.DOS.Lucifer

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:30:18.77374537Z 48 PC: 12a6c | Get DOS version
2018-12-17T22:30:18.775331357Z 25 PC: 12ad2 | Get default drive
2018-12-17T22:30:18.777090828Z 71 PC: 12ae8 | Get current directory
2018-12-17T22:30:18.779884202Z 61 PC: 12b12 | Open file (Filename = 'A:\win.com')
2018-12-17T22:30:18.786201638Z 61 PC: 12b12 | Open file (Filename = 'C:\DOS\win.com')
2018-12-17T22:30:18.795783408Z 61 PC: 12b12 | Open file (Filename = 'PROMPT=$P$G\win.com')
2018-12-17T22:30:18.800258525Z 61 PC: 12b12 | Open file (Filename = 'COMSPEC=C:\COMMAND.COM\win.com')
2018-12-17T22:30:18.804578494Z 9 PC: 12a62 | Display string (String= 'This program requires Microsoft Windows. ')
2018-12-17T22:30:18.808571531Z 76 PC: 12a68 | Terminate with return code (Return code = '1')