Sample viewer

vx.netlux.org/Virus.DOS.Crash.600

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:22:14.169648948Z 47 PC: 18f7d | Get disk transfer address
2018-12-17T22:22:14.170903492Z 26 PC: 18f8c | Set disk transfer address
2018-12-17T22:22:14.171929817Z 42 PC: 18f2e | Get date 0x18f2e: mov ax, cx
0x18f30: sub ax, 0x7bc
0x18f33: mov cl, 4
0x18f35: shl ax, cl
0x18f37: or al, dh
0x18f39: inc cl
0x18f3b: shl ax, cl
0x18f3d: or al, dl
0x18f3f: cmp word ptr [6], 0
0x18f44: je 0x18f4f
0x18f46: sub ax, word ptr [6]
0x18f4a: sub ax, 0x14
0x18f4d: jl 0x18f54
0x18f4f: mov word ptr [6], ax
0x18f52: mov al, 0
0x18f54: ret
0x18f55: mov ax, 0xb800
0x18f58: mov es, ax
0x18f5a: mov di, 0
0x18f5d: add di, 0x51d
2018-12-17T22:22:14.174430271Z 98 PC: 18e58 | Get current PSP
2018-12-17T22:22:14.175471866Z 78 PC: 18ee3 | Find first file
2018-12-17T22:22:14.184294535Z 61 PC: 18dd8 | Open file (Filename = 'C:\DOS\EDIT.COM')
2018-12-17T22:22:14.191466348Z 63 PC: 18ded | Read file or device (Read 3 bytes on handle 5)
2018-12-17T22:22:14.196833775Z 66 PC: 18df7 | Move file pointer
2018-12-17T22:22:14.198078506Z 64 PC: 18e12 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:22:14.201090095Z 64 PC: 18e1f | Write file or device (Write 600 bytes on handle 5)
2018-12-17T22:22:14.547332844Z 66 PC: 18e2b | Move file pointer
2018-12-17T22:22:14.548891432Z 64 PC: 18e36 | Write file or device (Write 3 bytes on handle 5)
2018-12-17T22:22:14.554758899Z 87 PC: 18e48 | Get or set file date and time
2018-12-17T22:22:14.556922135Z 62 PC: 18e4d | Close file
2018-12-17T22:22:14.56337047Z 26 PC: 18f96 | Set disk transfer address
2018-12-17T22:22:14.564938987Z 48 PC: 13777 | Get DOS version
2018-12-17T22:22:14.566056918Z 9 PC: 13783 | Display string (String= 'Incorrect DOS version ')