Sample viewer

vx.netlux.org/Virus.DOS.Deicide.Comment.2570

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:19:58.46547455Z 26 PC: 12a63 | Set disk transfer address
2018-12-17T22:19:58.480374918Z 78 PC: 12a6e | Find first file
2018-12-17T22:19:58.487621167Z 79 PC: 12aad | Find next file
2018-12-17T22:19:58.4963888Z 79 PC: 12aad | Find next file
2018-12-17T22:19:58.499917873Z 79 PC: 12aad | Find next file
2018-12-17T22:19:58.504685858Z 79 PC: 12aad | Find next file
2018-12-17T22:19:58.508158089Z 79 PC: 12aad | Find next file
2018-12-17T22:19:58.511555593Z 79 PC: 12aad | Find next file
2018-12-17T22:19:58.515638562Z 79 PC: 12aad | Find next file
2018-12-17T22:19:58.519235763Z 61 PC: 12a8d | Open file (Filename = 'TEST.COM')
2018-12-17T22:19:58.527050555Z 63 PC: 12a9c | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:19:58.531585951Z 62 PC: 12aa0 | Close file
2018-12-17T22:19:58.533959133Z 79 PC: 12aad | Find next file
2018-12-17T22:19:58.537258459Z 26 PC: 12b3e | Set disk transfer address
2018-12-17T22:19:58.540047661Z 44 PC: 12b42 | Get time 0x12b42: xor dl, dl
0x12b44: xchg dl, dh
0x12b46: add dx, dx
0x12b48: add dx, 0x21a
0x12b4c: mov si, dx
0x12b4e: mov dx, word ptr cs:[si]
0x12b51: mov ah, 9
0x12b53: int 0x21
0x12b55: jmp word ptr cs:[0xad0]
0x12b5a: xchg ax, dx
0x12b5b: add ch, byte ptr [si - 0x40fe]
0x12b5f: add bl, bh
0x12b61: add al, byte ptr [di]
0x12b63: add bp, word ptr [bx + di]
0x12b65: add ax, word ptr [bp + 3]
0x12b68: outsw dx, word ptr [si]
0x12b69: add cx, word ptr [si - 0x50fd]
0x12b6d: add cx, bx
0x12b6f: add sp, bx
0x12b71: add di, bx
2018-12-17T22:19:58.543240925Z 9 PC: 12b55 | Display string (String= ' Welcome to COMMENTATOR II ')