Sample viewer

vx.netlux.org/Virus.DOS.LME.Demo

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:03:58.183566538Z 53 PC: 12a9a | Get interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T23:03:58.185507165Z 53 PC: 12ae5 | Get interrupt vector (Interrupt = '3' AKA 'Auxiliary input')
2018-12-17T23:03:58.187158593Z 53 PC: 12b01 | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T23:03:58.189232498Z 60 PC: 12c2f | Create or truncate file
2018-12-17T23:03:58.215077312Z 44 PC: 13530 | Get time 0x13530: mov word ptr cs:[0x4b0], cx
0x13535: mov word ptr cs:[0x4b3], dx
0x1353a: ret
0x1353b: push bx
0x1353c: push cx
0x1353d: push dx
0x1353e: push ax
0x1353f: mov ax, 0xf59e
0x13542: mov bx, 0x8b6
0x13545: mov cx, ax
0x13547: mov dx, 0x8405
0x1354a: mul dx
0x1354c: shl cx, 3
0x1354f: add ch, cl
0x13551: add dx, cx
0x13553: add dx, bx
0x13555: shl bx, 2
0x13558: add dx, bx
0x1355a: add dh, bl
0x1355c: mov cl, 5
2018-12-17T23:03:58.26201721Z 64 PC: 131f8 | Write file or device (Write 1411 bytes on handle 5)
2018-12-17T23:03:58.270447166Z 62 PC: 131fc | Close file
2018-12-17T23:03:58.279420717Z 76 PC: 13208 | Terminate with return code (Return code = '107')