Sample viewer

vx.netlux.org/Virus.DOS.Raimon.994

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:34:58.055785361Z 9 PC: 12b36 | Display string (Could not find end pointer)
2018-12-17T22:34:58.090207286Z 71 PC: 12abf | Get current directory
2018-12-17T22:34:58.09333952Z 78 PC: 12ae5 | Find first file
2018-12-17T22:34:58.099554497Z 16 PC: 12af9 | Close file
2018-12-17T22:34:58.110677566Z 61 PC: 12afe | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:34:58.118325723Z 63 PC: 12b09 | Read file or device (Read 4 bytes on handle 5)
2018-12-17T22:34:58.124563124Z 66 PC: 12b19 | Move file pointer
2018-12-17T22:34:58.125955708Z 44 PC: 12a69 | Get time 0x12a69: mov byte ptr [0x122], dl
0x12a6d: call 0x12a86
0x12a70: pop bx
0x12a71: mov cx, 0x3e2
0x12a74: mov dx, 0x100
0x12a77: mov ah, 0x30
0x12a79: add ah, 0x10
0x12a7c: int 0x21
0x12a7e: inc byte ptr [0x4e2]
0x12a82: call 0x12a86
0x12a85: ret
0x12a86: mov bx, 0x15e
0x12a89: mov al, byte ptr [0x122]
0x12a8d: cmp al, 0
0x12a8f: je 0x12a9d
0x12a91: xor byte ptr [bx], al
0x12a94: inc bx
0x12a95: add al, bh
0x12a97: cmp bx, 0x4e1
0x12a9b: jle 0x12a91
2018-12-17T22:34:58.129099922Z 64 PC: 12a7e | Write file or device (Write 994 bytes on handle 5)
2018-12-17T22:34:58.143415356Z 62 PC: 12b22 | Close file
2018-12-17T22:34:58.151681922Z 59 PC: 12adc | Change current directory