Sample viewer

vx.netlux.org/Virus.DOS.Sailor.1113

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:33:44.332084289Z 42 PC: 12b1f | Get date 0x12b1f: cmp bx, 0xdef6
0x12b23: je 0x12b75
0x12b25: push es
0x12b26: mov ax, 0x3521
0x12b29: int 0x21
0x12b2b: mov word ptr cs:[bp + 0x1b9], bx
0x12b30: mov word ptr cs:[bp + 0x1bb], es
0x12b35: pop es
0x12b36: mov ax, es
0x12b38: dec ax
0x12b39: mov ds, ax
0x12b3b: sub di, di
0x12b3d: cmp byte ptr [di], 0x5a
0x12b40: je 0x12b4a
0x12b42: inc ax
0x12b43: add ax, word ptr [di + 3]
0x12b46: mov ds, ax
0x12b48: jmp 0x12b3d
0x12b4a: sub word ptr [di + 3], 0x48
0x12b4e: nop
2018-12-17T22:33:44.33457389Z 53 PC: 12b2b | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:33:44.350081647Z 37 PC: 12b70 | Set interrupt vector (Interrupt = '33' AKA 'Random read')