Sample viewer

vx.netlux.org/Virus.DOS.Olen.6144

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:46:01.244391981Z 82 PC: 9cddf | Get DOS internal pointers (SYSVARS)
2018-12-17T22:46:01.247187958Z 42 PC: 9cddf | Get date 0x9cddf: ret
0x9cde0: add ax, word ptr [bx + di - 0x7101]
0x9cde4: stosw word ptr es:[di], ax
0x9cde5: jne 0x9ce11
0x9cde7: cmp bp, 0xada5
0x9cdeb: jne 0x9ce11
0x9cded: cmp cx, 0xaaec
0x9cdf1: jne 0x9ce11
0x9cdf3: cmp bx, 0x3fa0
0x9cdf7: jne 0x9ce11
0x9cdf9: cmp ax, 0x41a
0x9cdfc: jne 0x9ce11
0x9cdfe: cmp dx, 0x7ba
0x9ce02: jne 0x9ce11
0x9ce04: cmp si, 0x96
0x9ce08: jne 0x9ce11
0x9ce0a: push cs
0x9ce0b: pop ds
0x9ce0c: mov dx, 0x19c
0x9ce0f: mov bh, 0x21
2018-12-17T22:46:01.250451819Z 9 PC: 12a82 | Display string (String= 'Goat file (COM). Size=0000014Dh/0000000333d bytes. ')
2018-12-17T22:46:01.255411034Z 76 PC: 12a86 | Terminate with return code (Return code = '36')