Sample viewer

vx.netlux.org/Virus.DOS.ChaosYears.1837

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:22:34.624038672Z 42 PC: 13201 | Get date 0x13201: cmp dx, word ptr [si + 0x2f]
0x13204: jne 0x13209
0x13206: jmp 0x132a9
0x13209: mov dx, 0x1234
0x1320c: push dx
0x1320d: mov ax, 0x30ff
0x13210: int 0x21
0x13212: pop dx
0x13213: or dx, dx
0x13215: jne 0x1321a
0x13217: jmp 0x1329d
0x1321a: push ds
0x1321b: mov ax, 0xffff
0x1321e: mov ds, ax
0x13220: xor ax, ax
0x13222: cmp byte ptr [0xe], 0xfc
0x13227: jne 0x1322b
0x13229: inc al
0x1322b: pop ds
0x1322c: mov byte ptr [si + 0x2a], al
2018-12-17T22:22:34.62698807Z 48 PC: 13212 | Get DOS version
2018-12-17T22:22:34.628813111Z 9 PC: 12c22 | Display string (Could not find end pointer)
2018-12-17T22:22:34.632904885Z 76 PC: 12c28 | Terminate with return code (Return code = '0')