Sample viewer

vx.netlux.org/Virus.DOS.Level3.5987

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:29:32.506664995Z 82 PC: 14634 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:29:32.508010652Z 98 PC: 146bc | Get current PSP
2018-12-17T22:29:32.509592463Z 44 PC: 13233 | Get time 0x13233: mov byte ptr cs:[0xca], dl
0x13238: test dh, 1
0x1323b: je 0x13243
0x1323d: add word ptr cs:[0xca], 0x64
0x13243: mov ax, 0x13
0x13246: int 0x10
0x13248: push cs
0x13249: pop ds
0x1324a: call 0x22d3c
0x1324d: call 0x2313a
0x13250: call 0x13291
0x13253: call 0x132d4
0x13256: call 0x132d4
0x13259: call 0x132d4
0x1325c: inc word ptr cs:[0x83d]
0x13261: cmp word ptr cs:[0x83b], 0
0x13267: jne 0x13253
0x13269: call 0x132a9
0x1326c: shr word ptr cs:[0x83d], 1
0x13271: shr word ptr cs:[0x83d], 1
2018-12-17T22:29:32.521876009Z 53 PC: 13296 | Get interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:29:32.52346386Z 37 PC: 132a8 | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')
2018-12-17T22:29:33.454580785Z 37 PC: 132b3 | Set interrupt vector (Interrupt = '28' AKA 'Get allocation info for specified drive')