Sample viewer

vx.netlux.org/Virus.DOS.Int_FF.1024

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:30:41.938905657Z 82 PC: 12ad5 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:30:41.941272219Z 37 PC: 12cc0 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:30:41.942952124Z 82 PC: 12cc4 | Get DOS internal pointers (SYSVARS)
2018-12-17T22:30:41.944544375Z 53 PC: 12cdd | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:30:41.947996835Z 42 PC: 12cfe | Get date 0x12cfe: add byte ptr [bx + si - 0x6f70], dl
0x12d02: nop
0x12d03: nop
0x12d04: nop
0x12d05: mov ds, di
0x12d07: mov bx, word ptr [0x392]
0x12d0b: mov es, word ptr [0x394]
0x12d0f: mov ax, word ptr es:[bx]
0x12d12: mov word ptr [0x43d], ax
0x12d15: mov ax, 0x25ff
0x12d18: mov dx, word ptr [0x392]
0x12d1c: mov ds, word ptr [0x394]
0x12d20: int 0x21
0x12d22: mov ds, si
0x12d24: mov ax, 0x2521
0x12d27: mov dx, 0x3d6
0x12d2a: int 0x21
0x12d2c: mov ds, di
0x12d2e: ret
0x12d2f: push bp
2018-12-17T22:30:41.951107903Z 37 PC: 12d22 | Set interrupt vector (Interrupt = '255' AKA 'UNKNOWN!')
2018-12-17T22:30:41.952730915Z 37 PC: 12d2c | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:30:41.954963919Z 9 PC: 12aa2 | Display string (String= 'ABCDE - This is a 100 byte COM test, 1994 ')