Sample viewer

vx.netlux.org/Virus.DOS.ARCV.Benoit

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:43:08.964821081Z 254 PC: 12a8c | UNKNOWN!
2018-12-17T22:43:08.967070405Z 42 PC: 12a95 | Get date 0x12a95: mov ax, word ptr [si + 0x239]
0x12a99: mov bx, word ptr [si + 0x23b]
0x12a9d: add ah, 4
0x12aa0: cmp ah, 0xc
0x12aa3: jbe 0x12aa9
0x12aa5: sub ah, 0xc
0x12aa8: inc bx
0x12aa9: cmp cx, bx
0x12aab: jb 0x12ab8
0x12aad: cmp dl, al
0x12aaf: jne 0x12ab8
0x12ab1: cmp dh, ah
0x12ab3: jb 0x12ab8
0x12ab5: jmp 0x12b39
0x12ab8: call 0x12ade
0x12abb: mov ax, word ptr [si + 0x4c4]
0x12abf: mov bx, word ptr [si + 0x4c0]
0x12ac3: mov cx, word ptr [si + 0x4c2]
0x12ac7: cli
0x12ac8: mov ss, bx
2018-12-17T22:43:08.970242493Z 0 PC: 12a42 | Program terminate