Sample viewer

vx.netlux.org/Virus.DOS.Scoundrel.3323

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T23:12:12.753508254Z 48 PC: 13e22 | Get DOS version
2018-12-17T23:12:12.75543106Z 171 PC: 13e2b | UNKNOWN!
2018-12-17T23:12:12.756305654Z 68 PC: 13e67 | I/O control for devices (Set for = '')
2018-12-17T23:12:12.757959204Z 44 PC: 13e6f | Get time 0x13e6f: and dl, 7
0x13e72: jne 0x13e30
0x13e74: mov ax, ds
0x13e76: dec ax
0x13e77: mov ds, ax
0x13e79: cmp byte ptr [0], 0x5a
0x13e7e: jne 0x13e30
0x13e80: sub word ptr [3], 0x100
0x13e86: sub word ptr [0x12], 0x100
0x13e8c: mov es, word ptr [0x12]
0x13e90: xor ax, ax
0x13e92: mov ds, ax
0x13e94: sub word ptr [0x413], 4
0x13e99: push cs
0x13e9a: pop ds
0x13e9b: pop si
0x13e9c: sub si, 3
0x13e9f: xor di, di
0x13ea1: mov cx, 0xcfb
0x13ea4: push si
2018-12-17T23:12:12.769606917Z 9 PC: 13dc6 | Display string (String= 'Hello - This is a 5000 COM test file, 1993 ')