Sample viewer

vx.netlux.org/Virus.DOS.Picket.843

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:53:38.586374902Z 53 PC: 12b41 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:53:38.58886081Z 42 PC: 12bd7 | Get date 0x12bd7: cmp ax, 0x1992
0x12bda: je 0x12c30
0x12bdc: mov ah, 0x49
0x12bde: int 0x21
0x12be0: jb 0x12c30
0x12be2: mov ah, 0x48
0x12be4: mov bx, 0xffff
0x12be7: int 0x21
0x12be9: sub bx, 0x81
0x12bed: mov cx, es
0x12bef: stc
0x12bf0: adc cx, bx
0x12bf2: mov ah, 0x4a
0x12bf4: int 0x21
0x12bf6: mov bx, 0x80
0x12bf9: stc
0x12bfa: sbb word ptr es:[2], bx
0x12bff: mov es, cx
0x12c01: mov ah, 0x4a
0x12c03: int 0x21
2018-12-17T22:53:38.59149442Z 73 PC: 12be0 | Release memory
2018-12-17T22:53:38.593164287Z 72 PC: 12be9 | Allocate memory
2018-12-17T22:53:38.604463773Z 74 PC: 12bf6 | Reallocate memory
2018-12-17T22:53:38.606066047Z 74 PC: 12c05 | Reallocate memory
2018-12-17T22:53:38.60795637Z 9 PC: 12aa2 | Display string (String= 'Hello - Copyright S & S International, 1990 ')