Sample viewer

vx.netlux.org/Virus.DOS.Ninja.1379

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:41:58.928705013Z 144 PC: 12a5c | UNKNOWN!
2018-12-17T22:41:58.93295772Z 42 PC: 12ec3 | Get date 0x12ec3: cmp cx, 0x7cb
0x12ec7: jne 0x12ee0
0x12ec9: cmp cx, 0x7cc
0x12ecd: jne 0x12ee0
0x12ecf: cmp dl, 0xd
0x12ed2: jne 0x12ee0
0x12ed4: mov ah, 0x2c
0x12ed6: int 0x21
0x12ed8: cmp ch, 0xd
0x12edb: jne 0x12ee0
0x12edd: call 0x22df1
0x12ee0: pop dx
0x12ee1: pop cx
0x12ee2: pop ax
0x12ee3: ret
0x12ee4: int 0x20
0x12ee6: add byte ptr [bx + si], al
0x12ee8: add byte ptr [bx + si], al
0x12eea: add byte ptr [bx + si], al
0x12eec: add byte ptr [bx + si], al

{"DateBased":true,"Day":1,"Month":1,"Year":1980,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":7394,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:01:29.107112474Z 144 PC: 12a5c | UNKNOWN!
2018-12-25T12:01:29.11130161Z 42 PC: 12ec3 | Get date 0x12ec3: cmp cx, 0x7cb
0x12ec7: jne 0x12ee0
0x12ec9: cmp cx, 0x7cc
0x12ecd: jne 0x12ee0
0x12ecf: cmp dl, 0xd
0x12ed2: jne 0x12ee0
0x12ed4: mov ah, 0x2c
0x12ed6: int 0x21
0x12ed8: cmp ch, 0xd
0x12edb: jne 0x12ee0
0x12edd: call 0x22df1
0x12ee0: pop dx
0x12ee1: pop cx
0x12ee2: pop ax
0x12ee3: ret
0x12ee4: int 0x20
0x12ee6: add byte ptr [bx + si], al
0x12ee8: add byte ptr [bx + si], al
0x12eea: add byte ptr [bx + si], al
0x12eec: add byte ptr [bx + si], al

{"DateBased":true,"Day":1,"Month":1,"Year":1995,"Hour":0,"Min":0,"Second":0,"TimeBased":false,"OriginalID":7394,"SideJobID":0}

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-25T12:01:29.786722396Z 144 PC: 12a5c | UNKNOWN!
2018-12-25T12:01:29.790354196Z 42 PC: 12ec3 | Get date 0x12ec3: cmp cx, 0x7cb
0x12ec7: jne 0x12ee0
0x12ec9: cmp cx, 0x7cc
0x12ecd: jne 0x12ee0
0x12ecf: cmp dl, 0xd
0x12ed2: jne 0x12ee0
0x12ed4: mov ah, 0x2c
0x12ed6: int 0x21
0x12ed8: cmp ch, 0xd
0x12edb: jne 0x12ee0
0x12edd: call 0x22df1
0x12ee0: pop dx
0x12ee1: pop cx
0x12ee2: pop ax
0x12ee3: ret
0x12ee4: int 0x20
0x12ee6: add byte ptr [bx + si], al
0x12ee8: add byte ptr [bx + si], al
0x12eea: add byte ptr [bx + si], al
0x12eec: add byte ptr [bx + si], al